2FA User Guide

How to set up and use Microsoft Authenticator for two-factor authentication

What is Two-Factor Authentication (2FA)?

Two-Factor Authentication adds an extra layer of security to your account. Even if someone learns your password, they won't be able to log in without a code from your authenticator app.

After enabling 2FA, logging in requires:

  1. Your employee number and password (as usual)
  2. A 6-digit code from Microsoft Authenticator
1Download Microsoft Authenticator

Download the app on your smartphone:

iPhone / iPad

Open the App Store and search for "Microsoft Authenticator"

Android

Open the Google Play Store and search for "Microsoft Authenticator"

The app is free. You do not need a Microsoft account to use it. Just install and open it.

2Set Up 2FA on Your Account
  1. Log in to your account and go to Two-Factor Authentication in the sidebar menu.
  2. Click "Set Up 2FA". A QR code will appear on screen.
  3. Open Microsoft Authenticator on your phone.
  4. Tap "Add account""Other account (Google, Facebook, etc.)" or "Work or school account".
  5. Tap the QR code icon at the bottom or point your phone's camera at the QR code on screen.
  6. Once scanned, an entry called "Treetops WO System" will appear in the app.

Can't scan the QR code?

You can manually add the account in Microsoft Authenticator:

  1. Tap "Add account""Other account"
  2. Tap "enter code manually" at the bottom
  3. Enter the account name (e.g. your employee number)
  4. Enter the secret key shown on the setup page
  5. Set type to "Time-based" and tap "Finish"
3Verify and Confirm
  1. After scanning the QR code, Microsoft Authenticator will show a 6-digit code that refreshes every 30 seconds.
  2. Enter this code on the setup page and click "Verify & Enable".
  3. If the code is correct, 2FA is now enabled! You'll see a green confirmation.

Important: If you get a new phone or uninstall the app, you will need your admin to reset your 2FA before you can log in again. Contact IT support if this happens.

4Logging In With 2FA
  1. Enter your employee number and password as usual.
  2. You will be asked for a 6-digit verification code.
  3. Open Microsoft Authenticator on your phone.
  4. Find the "Treetops WO System" entry and tap it to see the code.
  5. Enter the 6-digit code before it expires (it refreshes every 30 seconds).
  6. Click "Verify & Sign In".
Troubleshooting

"Invalid code" error

  • Make sure you're entering the code for the Treetops WO System entry, not a different account.
  • Check that your phone's date and time are set to automatic/network time.
  • Wait for a fresh code (the bar fills up, then a new code appears).

Lost your phone or got a new one?

Contact your administrator. They can reset your 2FA so you can set it up again on your new device.

Code entry timed out?

The 2FA code entry screen expires after 5 minutes for security. If it times out, simply go back to the login page and enter your credentials again.