MFA Management in Okta

Summary

This article walks users through managing their multi-factor authentication factors in Okta at F&M, covering password updates, Okta Verify setup, security key registration, biometric authenticators, and security questions. It includes step-by-step instructions for each valid method and guidance on removing outdated factors while avoiding account lockout.

Body

Overview

This article explains how to manage your multi-factor authentication (MFA) factors at F&M, including adding a new factor, removing an old one, and updating existing factors. Your authentication factors are the methods you use to verify your identity when logging into F&M systems protected by Okta. The valid factors at F&M are: password, Okta Verify, security key, biometric authenticator, and security question. This article is for anyone who needs to set up a new device, replace a lost or upgraded factor, or update an existing method.

Before you get started

  • You must be able to log into your existing Okta account with at least one working authentication factor to make changes.
  • If you have lost access to all your factors and cannot log in, contact the ITS Help Desk for identity verification and account recovery.
  • Setting up a security key requires Help Desk assistance for initial provisioning; see the note in that section below.

Jump to a topic in this knowledge article

Optional:

How to

Follow these steps to add, update, or remove your authentication factors in Okta.

Updating Your Password

  1. Log into the Okta dashboard.
  2. Go to your account settings and find the Password section under Security Methods.
  3. Select Edit or Change Password, then enter your current password and your new password.
  4. Confirm the change when prompted.

Adding or Updating Okta Verify

  1. Log into the Okta dashboard and go to your account settings.
  2. Find the Okta Verify option under Security Methods.
  3. If you're setting up Okta Verify for the first time, select Set up and follow the prompts to scan the QR code with the Okta Verify app on your phone.
  4. If you're replacing Okta Verify on a new device (for example, after getting a new phone), select Remove next to the existing entry, then repeat the setup process on your new device.

Note: If you're switching phones, it's best to set up Okta Verify on the new device before removing it from the old one, so you always have at least one working factor.

Setting Up or Updating Your Security Question

  1. Log into the Okta dashboard and go to your account settings.
  2. Find the Security Question option under Security Methods.
  3. Select Set up or Edit, then choose your question and enter your answer.
  4. Save your changes.

Removing an Authentication Factor

  1. Log into the Okta dashboard and go to your account settings.
  2. Locate the factor you want to remove under Security Methods.
  3. Select Remove and confirm.

Managing a Security Key

  1. Security keys require setup through the ITS Help Desk.
  2. Contact the Help Desk to request a new security key or to report a lost or damaged one.
  3. Once your security key is provisioned, Help Desk staff will assist you with registering it in Okta.

Note: For questions about security key provisioning or troubleshooting, contact the ITS Help Desk directly.

Adding or Updating a Biometric Authenticator

  1. Log into the Okta dashboard and go to your account settings.
  2. Find the Biometric Authenticator option under Security Methods.
  3. Select Set up and follow the prompts on your device to register your fingerprint, face, or other supported biometric.
  4. To update or replace it, remove the old entry first, then add the new one following the same steps.

Note: Always make sure you have at least one working factor set up before removing another.

Important Notes

  • Keep at least one backup authentication method active at all times to avoid being locked out.
  • If you get a new phone, set up your new authentication method before wiping or losing access to the old one.
  • If you have questions about additional account or process guidance not covered here, contact the ITS Help Desk.
  • If you're ever unable to authenticate at all, contact the Help Desk for identity verification and account recovery.

Details

Details

Article ID: 22167
Created
Wed 9/9/26 4:15 PM
Modified
Fri 9/11/26 12:41 PM