Log in with multifactor authentication, Freja eID+ and Microsoft Authenticator

This manual shows how to log in with multifactor authentication at Umeå Universitys system.

Multi-factor authentication (MFA) is a service that gives you increased protection when logging in to some of the university’s systems. With multi-factor authentication, you log in in two steps, which gives you extra layer of protection on top of your Umu-id and password. Umeå university uses both Microsoft Authenticator and Freja eID+ as multifactor. This means that the log-in site can look different depending on which system you’re logging in to.

Freja eID+

Freja eID plus is a free, government approved digital ID card that helps you login in some system at Umeå university. You can prove your identity in an application on your phone instead of showing a physical legitimation card.

Follow this manual to log in with Freja eID+.

Microsoft Authenticator

The app Microsoft Authenticator means that you log in on some services with your Umu-id and password, and then you approve the log in on your app Microsoft Authenticator on your phone or hardware token.

Follow this manual to log in with Microsoft Authenticator.

The difference of how to log in with either Freja eID+ or Microsoft Authenticator

When you log in on some of the University’s system, for example Skyddade dokument, you need to choose wether you want to log in with Freja eID+ or Microsoft Authenticator. It will look like this after you’ve typed your Umu-id and password:

Choose the alternative Sign in with Microsoft authenticator if you log in with a hardware token. You also choose this alternative if you use the Microsoft authenticator app on you mobile unit.

The only alternative for log in at Office 365 is Microsoft Authenticator. After you’ve typed your Umu-id and password you will directly be asked to accept the login in your Microsoft Authenticator-app. You don’t have to choose which method you want to log in with.

 

Reset MFA with one-time password

This manual describes how you reset MFA with the one-time password you got from Servicedesk. 

  1. Go to https://aka.ms/mysecurityinfo.
  2. Write your Umu-id adress.
  3. Write the one-time password you got from Servicedesk.
  4. Now you see what units your MFA is activated on. If you’ve lost a unit, click on Delete. Then you click on Add method to register a new unit.
  5. Now you can choose which method you want to use for your new unit. Then click Add.
  6. You will now be asked to download Microsoft authenticator to your phone. Download the app and click Next.
  7. Follow the instructions in the app to set up you account. Choose between Work account or school account.
  8. Scan the QR-code that shows on the computer with your app.
  9. You will now be asked to log in. You will se two numbers on your computer, write these on your app.
  10. Click Yes. Now you’re done.

Log in using multi-factor authentication (MFA) at Office 365

Multifactor authentication (MFA) is a service that gives you increased protection when logging in to some of the university’s systems. With multi-factor authentication, you log in to the university’s systems in two steps: using your Umu-id and password, and using the Microsoft Authenticator app on your phone/tablet or a hardware token. In this guide, we will describe step-by-step how to log in to the University’s systems using multi-factor authentication on both your phone/tablet or hardware token.


Log in using code

  1. When logging in to a system that uses multi-factor authentication – log in using your Umu-id and password.
  2. Click Next.
  3. A window will show and you’ll be asked to open Microsoft Authenticator on your Phone.
  4. Start Microsoft Authenticator on your phone and choose your Umu account.
  5. Enter the code in “Enter number here” that is presented on your computer screen on your phone.
  6. Click Yes.
  7. You are now logged in!

Log in using a hardware token

  1. When logging in to a system that uses multi-factor authentication – log in using your Umu-id and password.
  2. Click Next.
  3. A window will be pop up on your computer asking you to accept the log in.
  4. Start your hardware token.
  5. The token will show six numbers. Fill in the numbers in the field Code on your computer.
  6. Click on Verify.
  7. Done!

If you can’t see the numbers on your mobilephone

Does it look like this when you open Authenticator on your iphone?

  1. Click on Hide.
  2. Then press to enter a new code from Microsoft Authenticator.
  3. You should see the numbers now.
  4. Go back to the app on your phone and enter the code being shown.

Change standard method for login (MFA)

If you want to change your standard method for login, you can change it with this method.

  1. Visit the website Microsoft Safety info.
  2. Click the menu Security info.
    Add method multi-factor authentication
  3. Click on Default sign-in method.
  4. Choose between using a code from you app or getting a notification from the app.
  5. Done!

Add multi-factor authentication on new device (MFA)

Multifactor authentication (MFA) is a service that gives you increased protection when logging in to some of the university’s systems. With multi-factor authentication, you log in to the university’s systems in two steps: using your Umu-id and password, and the using the Microsoft Authenticator app on your phone or tablet. In this guide, we will describe how to add multi-factor authentication on a new device.


  1. Visit the Microsoft Security info website.
  2. Go to the tab Security info.
  3. Click Add method.
    Add method multi-factor authentication
  4. Click Add in the window that appears.
    Add method Authenticator
  5. You will now be asked to install Microsoft Authenticator on your new unit. If you haven’t already, please download the app to your phone or tablet from Google Play or App Store.
  6. Click Next.
    Install Authenticator on device
  7. In the next screen, click Next.
    Set up account Authenticator
  8. A screen now appears that asks you to scan a QR code. Keep the screen open while you take out your phone.
    Scan Qr code Authenticator
  9. Start the Microsoft Authenticator app on your mobile or tablet. Note that the images below are from an Iphone but the process looks similar in Android products.
  10. Click on the plus sign in the upper right corner of the screen to add an account.
    Microsoft Authenticator add acount
  11. Select the account type Work or school account (Arbets- eller skolkonto).
    Microsoft Authenticator arbets- eller skolkonto
  12. In the window that appears, select Scan QR Code.
    Microsoft Authenticator adding account
  13. Use your mobile or tablet to scan the QR code shown on the computer screen.
  14. After scanning the code, click Next.
    Scan Qr code Authenticator
  15. A message will be shown, stating that Microsoft Authenticator has been connected to your account. Click Next.
  16. In the next screen you will be asked to test the application. At the same time the Microsoft Authenticator app will receive a notification asking you to accept the login. Click Accept on your mobile/tablet.
    Test the application Authenticator
  17. Your screen will now show a confirmation of the test. Click Next.
    Notification approved Authenticator
  18. You have now activated multifactor authentication for a second device! Your standard login method is set to getting at notification from Microsoft Authenticator but you can change it (link in the right column). Click Done.

Activate multi-factor authentication (MFA)

Multi-factor authentication (MFA) is a service that gives you increased protection when logging in to some of the university’s systems. With multi-factor authentication, you log in to the university’s systems in two steps: using your Umu-id and password, and using the Microsoft Authenticator app on your phone or tablet. In this guide, we will describe step-by-step how to enable multi-factor authentication (MFA) for your Umu-id.
Please observe that the steps can look a bit different than the images, depending on which type of unit you are using (Iphone, Android or Ipad).
Important! If you change your mobile unit, you have to activate multi-factor authentication on the new device before you delete your old one. If you lose your phone you have to contact Servicedesk and legitimize yourself to get a one-time-code to log in and activate MFA on the new device.

Important! Do not start your activation (step 2) until you are ready to go through the whole process. Once you have activated multi-factor authentication, you will not be able to log in to your systems until you have completed steps 3-18.

 


  1. Download the Microsoft Authenticator app to your phone or tablet. The icon should look like the symbol below and be from Microsoft Corporation.
  2. Visit our web page for activating multifactor authentication, login with Umu-id@ad.umu.se and password. Once you have finished the, MFA will be activated for your account. Please wait 5 minutes before moving on to the next step.
  3. Open your browser and go to: aka.ms/mfasetup.
  4. Log in with your Umu-id@ad.umu.se and password. You will then receive the message below:
    Multifactor authentication login Office 365
  5. Select Next.
  6. The next screen will ask you to download the Microsoft Authenticator app. Click Next.
    Install Authenticator on device
  7. In the next screen, click Next.
    Set up account Authenticator
  8. A screen now appears that asks you to scan a QR code. Keep the screen open while you take out your mobile unit.
    Scan Qr code Authenticator
  9. Start the Microsoft Authenticator app on your mobile unit.
  10. Click on the plus sign in the upper right corner of the screen to add an account.
    Microsoft Authenticator add acount
  11. Select the account type Arbets- eller skolkonto (work or school account).
    Microsoft Authenticator arbets- eller skolkonto
  12. In the window that appears, select Scan QR Code.
    Microsoft Authenticator adding account
  13. Use your mobile or tablet to scan the QR code shown on the computer screen. Click Next.
    Scan Qr code Authenticator
  14. A message will be shown, stating that Microsoft Authenticator has been connected to your account. Click Next.
  15. In the next screen you will be asked to test the application.
    Test the application Authenticator
  16. At the same time the Microsoft Authenticator app on your mobile unit will receive a notification asking you to accept the login. Click Accept on your mobile unit.
  17. Your screen will now show a confirmation of the test. Click Next.
    Notification approved Authenticator
  18. You have now activated multifactor authentication for your Umu-id! Your standard login method is set to using a code from Microsoft Authenticator. Click Done.