Set up Okta Verify for Multi-Factor Authentication (MFA)

Overview

This guide walks you through the steps to set up Okta Verify as your multi-factor authentication (MFA).

Contents

  1. Video Training Guides
  2. Setting Up Okta Verify Step-By-Step Guide
  3. Registering Your YubiKey as an MFA Authenticator in Okta
  4. Regaining Access to Your Okta Account in the Event of Device Lockout

Video Training

Setting Up Okta Verify for the First Time

Video Link: Setting Up Okta Verify for the First Time

Switching from DUO & Setting Up Okta Verify

Video Link: Switching from DUO & Setting Up Okta Verify

Step-By-Step Guide

Before you follow the steps in this article, install the Okta Verify app on your device. You can download the Okta Verify app from your device's app store.

iOS App: https://apps.apple.com/us/app/okta-verify/id490179405

Android App: https://play.google.com/store/apps/details?id=com.okta.android.auth&hl=en_US

  1. Login to my.mines.edu. 

Uploaded Image (Thumbnail)

 

  1. Open your account settings by clicking on your profile in the top-right corner of the screen. Click settings

Uploaded Image (Thumbnail)

 

  1. Scroll down and look for the Security Methods box. Next to the Okta Verify option, click the set up button. 

Uploaded Image (Thumbnail)
 

  1. You may be prompted to confirm your identity through your current Duo setup. Click the Verify button. 

Uploaded Image (Thumbnail)

 

  1. Enter your Mines password when prompted.

Uploaded Image (Thumbnail)

 

  1. In the Set up security methods window, you'll see prompts to set up Okta Verify. Click the Set up button. 

Uploaded Image (Thumbnail)

 

  1. Scan the QR Code in the window with your device.

Uploaded Image (Thumbnail)

  1. Your device will now begin connecting your Okta Verify app to your Okta account. In the Okta Verify app, you'll see a welcome screen alerting you that you're about to set up an account for your my.mines.edu account. Click the Get started button. 
  2. Choose Organization (work, school, company) as the account type you'd like to add.
  3. When prompted to add an account from another device, click the Skip button.
  4. Scan the QR Code you received in step 7 of these instructions with your device.

    Uploaded Image (Thumbnail)
     
  5. When prompted to enable biometric confirmation, click the enable button. (If you're not interested, click the skip this step button.)
  6. Your Okta Verify setup is now complete.

The next time you sign into anything that requires MFA, choose the Okta Verify enter a code option.

Then open your Okta Verify app. Click on the eye icon to see the code, and enter it to sign in. 

Note: If you’ve completed the setup, but are still seeing Duo when you when you sign in and are being authenticated, try clearing your web browser's cookies to forget Duo. Then, you can follow the directions above to select Okta Verify as your new MFA method.

Registering Your YubiKey as an MFA Authenticator in Okta

This section guides users through the process of registering their Security Key (Yubikey) as a Multi-Factor Authentication (MFA) authenticator. This authentication device enhances security by requiring physical presence to authenticate.

  1. Preparation
    • Ensure you have your YubiKey device.
    • Make sure you have access to your Okta account.
  2. Log in to Your Okta Account
    • Open your web browser and navigate to my.mines.edu
    • Enter your username, password, any other prompted method of authentication to log in.
    • If you are a new user who has not previously logged into Okta, has not registered any other MFA authenticator, or has had your MFA authenticator reset by IT, you will be forced to enroll in at least one MFA method to continue.
  3. Navigate to Security Settings
    • After logging in, click on your name or profile icon in the upper-right corner of the Okta dashboard.
    • Select My Settings from the drop-down menu.
      Setting option within User drop down menu.
  4. Add a New Authenticator
    • Click on Set up next to the Security Key or Biometric Authenticator option.
    • If you already have two methods of mfa authentication setup , you will be prompted to authenticate to add this new security method.
      Set up security key or biometric authenticator button.
  5. Register Your YubiKey
    • A new window will appear, prompting you to register your security key.
    • Click on Set up next to the Security Key or Biometric Authenticator.
      Set up button.
    • Insert your YubiKey into a USB port on your computer (or connect via NFC if using a supported device).
    • At this point, if your device supports other authentication methods, such as Apple’s Touch ID or Windows Hello, you may be prompted to choose from multiple options. In this case, select "Security Key" from the list. If you don’t see this option immediately, you may need to navigate to "Use another device" within the initial menu prompt.
      Security key setup.
      Continue Setup.
      Password saving location.
    • Follow the on-screen instructions and touch your YubiKey when prompted. (On Mac devices, you may not receive a prompt - watch for the blinking light on your YubiKey and touch it when it starts blinking.)
      Security key setup.
  6. Complete Registration
    • Follow any additional on-screen instructions to complete the setup process. 
  7. Confirm Setup
    • If the login is successful, your YubiKey has been successfully registered as an MFA authenticator for your Okta account.

Regaining Access to Your Okta Account in the Event of Device Lockout

If you’ve recently upgraded to a new phone and are unable to receive MFA notifications on your old device, you may find yourself locked out of your Okta account while attempting to transfer your Okta Verify MFA to the new device. The typical method of setting up Okta Verify on a new device involves scanning a QR code (or entering a manual code) from your old device first. If you can't use your old phone to do so, you’ll need to reset your MFA settings to regain access to our account.

Solution: Resetting MFA Authenticators through the IT Service Desk

To regain access, follow these steps:

  1. Contact the IT Service Desk:
    Reach out to the IT Service Desk for assistance. They will initiate the process of resetting your Okta Verify authenticator.

  2. Re-setup Okta Verify:
    Once your MFA authenticator is reset, follow the steps for Setting up Okta Verify for the First Time to add Okta Verify to your new device.

 

 

73% helpful - 11 reviews