Frequently Asked Questions about MFA
1. What is Multi-Factor Authentication?
Multi-Factor Authentication (MFA), sometimes used interchangeably with Two-Factor Authentication (2FA), uses an additional layer of security when you log in to a service outside the Diocese of Metuchen network. MFA relies on two forms of authentication: your standard Diocesan email service password and a second authentication method chosen during the initial setup. The second item is typically something you have with or near you: your cell phone receiving text messages (the most common method), your office phone, or an authenticator application on your mobile device.
2. When is MFA Used?
At this time, MFA is only required when logging into Diocesan Microsoft 365 services, including Email, from outside of St. John Neumann Pastoral Center. In the future, if additional Diocesan services require MFA, the Office of Information Systems will communicate the new requirements.
3. Which of the MFA verification options are available?
The following is a list of methods that can be used for this second type of verification:
- Text messages
- Mobile App notification
- Verification calls on your Office Phone/Land Line
| Verification Method |
Description |
| Text Message |
A text message is sent to your mobile phone with 6 digit code. Enter this code to complete the verification process |
| Microsoft Authenticator App |
A verification request is sent to your mobile phone asking you to complete verification by selecting verify/approve from the app. This occurs if app notification is the primary verification method chosen during MFA Setup. |
| Verification code with Authenticator App |
The mobile app on your device generates a verification code. This occurs if you select a verification code as your primary verification method. |
| Call on your office/landline. |
You will receive a phone call from Microsoft asking you to press the pound (#) sign on your office phone to verify your identity. |
4. Who is currently enrolled in MFA?
Anyone using Diocesan Microsoft 365 services, including Email, is being on-boarded to use MFA beginning 01/25/2023. You will receive an email with additional information from the Office of Information Systems.
5. Why do we require MFA?
We are required to use MFA by new Microsoft security guidelines. Our systems are under constant attack from perpetrators. The most common attacks are passwords related, where perpetrators send thousands of logins using usernames and passwords harvested from the web to phishing attacks, where they attempt to get your username and password. MFA will ensure that these attacks will not happen using the verification method.