Technology

Setting Up the Time Based One Time Passcode Authentication Method

Last modified 9/14/2023

Time-based one-time passcode (TOTP) is a standard protocol. Azure MFA, which is used to operate Illinois State University's MFA, allows authenticators that support the TOTP protocol to be used. Primary examples include the Google Authenticator, Duo Mobile, and password managers like LastPass and Bitwarden. 

Note:

This method provides an additional option for end users where they do not have, or want to use, a personal phone/smartphone and do not want a hardware token either.

  1. Navigate to account.illinoisstate.edu.
  2. Log in with your ULID and password.
  3. Upon logging in, click the Change MFA Devices button next to Multi-Factor Authentication. (See Figure 1).

    Figure 1:


  4. Press the Manage Devices button located at the bottom. (See Figure 2).

    Figure 2:

  5. You may be prompted to log in using your ISU email account, or even authenticate your login with your preferred MFA method (Authenticator app, phone call, text, etc.).
  6. Once you are in the Security Info tab, you should see the Default Sign in Method section with the Authenticator app - notification method as your main method. To change it to One-Time Password, click Change and you will then modify your method to Authenticator App or Hardware Token - Code in the drop down menu that appears (See Figures 3 and 4).

    Figure 3:
    Security Info - Change
    Figure 4:
    Drop-down menu selection

  7. Click Confirm to save your change. 
  8. You will see a confirmation message pop up at the top-right corner of your screen. You have successfully changed your authentication method to the One-Time Password option.

 Setting up the One Time Password Authentication Method using Google Authenticator

  1. Open a web browser and navigate to aka.ms/mfasetup.
  2. Verify with MFA if prompted.
  3. Click Add method.
  4. Select Authenticator app in the Choose a method drop-down menu.
  5. Click Add.
  6. Click I want to use a different authenticator app.
  7. Click Next.

Using an authenticator app with a barcode scanner?

  1. Follow the steps for the app to add an account.
  2. Scan the barcode image when prompted.

Using an authenticator app without a barcode scanner?

  1. Click Can't scan image?
  2. Copy the secret key.
  3. Follow the steps for the app to add an account.
  4. Enter the secret key when prompted.
  5. Enter the code displayed in the authenticator app.
  6. Click Next.

How to Get Help