Penn State Ditches SMS MFA Options, Introduces Passkey Authentication
Penn State and Microsoft are changing their multifactor authentication (MFA) options to improve security. Starting on February 1, 2027, SMS text and phone MFA will no longer be available for Penn State account holders.
This change aims to introduce more phishing-resistant methods, such as passkeys. Passkeys provide extra protection from cyberattacks by using biometric data like Face ID, Touch ID, fingerprint, or PIN instead of passwords.
Penn State recommends setting up a passkey, which is considered the most secure form of MFA. This change will affect how Penn State students, faculty, and staff log into various systems, including Outlook, Canvas, LionPATH, and Workday.