美术硕士-信息技术部门-火狐体育
DUO MFA Web Banner

DUO MFA

Return to Information Security Home

DUO Multi-Factor Authentication (MFA) is a service that adds an extra layer of protection to user accounts by requiring additional steps of verification before granting access.

这有助于防止未经授权的访问,即使密码被泄露。


What is MFA?

MFA (Multi-Factor Authentication) is a security process that requires users to provide two or more forms of verification to access an account or system. These factors typically fall into three categories:

  1. Something You Are – A username, NetID, or Biometrics such a fingerprint or facial recognition
  2. Something You Know – A password or PIN
  3. Something You Have – A phone, security hardware key/token, or authentication app (DUO)

By requiring multiple factors, MFA makes it harder for hackers to gain unauthorized access to your account, even if they have your password.

Why do we need it?

DUO MFA is important because it adds an extra layer of security to your university accounts, protecting them from hackers and phishing attacks.

Here’s why it matters:

1. Protects Against Stolen Passwords

If someone gets your password (through phishing, weak credentials, or other means), they still can’t access your account without an additional authentication factor.

2. Easy and Fast Verification

DUO makes multi-factor authentication simple by sending notifications to your phone. Using DUO push, enter the code on your computer screen into the Duo Mobile App when prompted. If you are using mobile codes, the code in your DUO App is entered on your computer screen.

3. Stops Unauthorized Access

If someone tries to log in to your account from an unknown device, DUO will alert you, giving you the chance to deny access and report the fraud activity back to a DUO administrator, keeping your information safe.

4. Works Across Multiple Services

The Duo mobile app can be used to protect other types of accounts beyond the university NetID  account. When setting up MFA for banking, shopping, personal email accounts, or social media, use DUO when it is offered.

Authentication Options

[Recommended] 

Smartphone/Tablet: This is the most common, convenient, and secure method of using DUO.

  • The DUO app allows you to verify through PUSH notifications or a code in the DUO App.

[Alternative]

Non-Smart Cellular Device: If your cellular device cannot run the DUO app you may choose to receive SMS text messages (standard messaging fees may apply)

Note: Montclair State University will never share the information entered in the device enrollment process, including cell phone and landline number(s), with other internal or external services.

DUO FAQ


Initial Enrollment

Important: Please ensure to download the DUO app via your mobile device App Store prior to completing this process. (Available on Apple iOS and Google Play Store)

Enrollment is performed via the DUO prompt

  • You can set up multiple devices and choose which one is your default option

Once you have installed the DUO app, access any Montclair service such as NEST or Workday to start the setup process.

  • You will be presented with a single-sign on login page where you will enter your NetID credentials
  • Once logged in, you will see a Welcome screen, click Get Started

duo welcome screen

Step 1: Add your device(s)

– If you are adding multiple devices they must be entered on this window

– Ensure that DUO Mobile (Recommended) is selected

– At this time, the University does not provide hardware security keys (YubiKey, FIDO2, Token2). While DUO supports these options, users have to purchase their own

Step 2: Enter your phone number including area code

– No parentheses or dashes required

Step 3: Confirm your phone number

Step 4: Confirm ownership

– Select Send me a passcode

– Once passcode is received, enter in the 6 digit code

Duo mfa code

– You will be prompted to download the DUO Mobile app if you have not already

Step 5: DUO Mobile QR Code

– Scan the QR Code on the screen or chose to receive an activation link

Step 6: You have successfully set up DUO once you hit Continue

Note: You can optionally add additional devices for MFA. It is recommended to add an additional device in case your primary is unavailable.


DUO Push vs DUO SMS

FEATURE

DUO PUSH

DUO SMS

Security

High – uses end-to-end encryption and resists phishing and man-in-the-middle attacks

Lower – vulnerable to SIM swapping, phishing, and SMS interception

Ease of Use

Very easy – approve login with one tap in the Duo Mobile app

Requires user to enter a passcode manually

Speed

Fast – real-time push notifications

Slower – wait for SMS delivery

Internet Required

Works either way

No – works without internet (just cellular service)

User Experience

Seamless and modern

Less convenient, more prone to user error

Recommended For

Most users and secure environments

Backup option if push or smartphone app isn’t available


Adding a New Device with Same Number

Note: These instructions are for reactivating DUO Mobile on a new device with the same phone number. You will need to have the DUO Mobile app installed prior to completing this process.

Step 1: Access a Montclair service such as NEST or Workday

Step 2: Select Other Options via the DUO authentication screen

Step 3: Select Manage Devices

Step 4: Verify your identity

Step 5: Select I have a new phone on the previously registered device

Step 6: Select Get Started on the phone setup screen

Step 7: Confirm ownership

– Select Send me a passcode

– Once passcode is received, enter in the 6 digit code

– You will be prompted to download the DUO Mobile app if you have not already

Step 8: DUO Mobile QR Code

– Scan the QR Code on the screen or chose to receive an activation link

Step 9: You have successfully set up DUO once you hit Continue


Does DUO have Access to my Personal Data?

The Duo Mobile App does not have access to your personal data or information. The app is safe to utilize on your personal mobile device.


International Travel DUO Use

You can still connect to Montclair application(s) or VPN using DUO as long as you ensure the following:

  • You are in possession of the DUO registered device
  • You have access to WiFi
  • Your DUO app is up to date
  • Use DUO Push notifications as they do not require international calling plans

If you do not have access to WiFi you can use the DUO mobile code.


Still Need Help?

For support regarding DUO, please contact the IT Service Desk at 973-655-7971, option 1, or by email at itservicedesk@montclair.edu for assistance.