Skip to main content

Multi-Factor Authentication (MFA) Changes

If you currently use text messages or phone calls for MFA, you must set up an alternative sign-in method before this date to avoid losing access to University Services.

OxIntranet

Can’t find what you’re looking for? More information for staff can be found on the 

IT and Digital section of OxIntranet (SSO required).

 

Important: Text Message and Phone Call verification methods will be retired by Microsoft on 1 February 2027.

What is changing?

From 1 February , the following MFA methods will no longer be available:

  • Phone call
  • Text message

Microsoft is making sign-in more secure by phasing out text message and phone call authentication. These methods are easier for attackers to compromise. Instead, users will be required to switch to stronger authentication methods such as a passkey, using the Microsoft Authenticator mobile app, or other more secure options. 

Who will be impacted by this change to MFA?

If you are currently using text message or phone call authentication, you should switch to a more secure authentication method. This must be done before 1 February 2027, after which text message and phone call options will no longer work.   

What should I do?

We recommend that you review your MFA factors, if you use text message or phone calls you must add a new authentication method before 1 February: How to set up supported authentication methods.

If you already use Microsoft Authenticator or another supported method then no immediate action may be required, but we encourage you to consider adding a passkey for a simpler and more secure experience.

Get started

MFA Change FAQ’s

Get support

If you cannot find the solution you need here then we have other ways to get IT support

Get IT support