Skip to main content

Multi-factor Authentication at Northwestern

Multi-factor authentication (MFA) provides an extra layer of security before logging in to an online service. MFA helps you ensure that you are the only person who can access your account(s), even if someone steals your password. You will log in using your Northwestern NetID/Password and as a second step, reconfirm your identity using a verification device of your choosing, like a phone or tablet.

MFA is critical in preventing unauthorized access to personal and institutional information if your password is compromised. Northwestern IT and IT staff across schools and departments are working to integrate MFA into all services utilized by the Northwestern community.

woman holding phone showing duo app

Security Features and Benefits

Get Started

You will need to register your device(s) to use MFA. Download the Duo App and register online in minutes!

Once registered, the login process is simple. Visit the IT Knowledge Base to learn more about using Multi-factor Authentication.

Notification Types

Below are the ways you can choose to verify your identify when logging in to MFA-enabled University systems. To help you choose which option fits your situation, see the MFA Notification Comparison. It offers usage scenarios and notification option to fit each scenario.

Duo Mobile Push (Recommended)

The Duo app is a one-touch verification solution compatible with every mobile device, including tablets and smartwatches. This is the recommended method for verifying your identity. All it requires is an active internet connection. Click Send Me a Push to send a prompt to your registered phone. Open Duo Mobile and tap Approve to log in.

Its use is especially important for those who travel, as it can be used over wireless anywhere in the world. The Duo app also offers the option to use stored passcodes when wireless access is not available.

Northwestern IT recommends using the Duo Mobile App and selecting the "push" notification type because it is the fastest, most convenient, and most cost-effective option.

Passcode

In situations where you don't have good cell phone reception, have poor internet access, or don't have the ability to receive an international call, your best option is to use the passcode method. This method has the added benefit of being completely free since it does not use your cellular data package.

Hardware Token

A Duo MFA token a small, battery-powered device that you can attach to a keychain. Pressing a button on the token generates a code on the built-in display. Please note the hardware token does not require cellular or internet service to receive Duo-generated passcodes.

Only when a mobile phone cannot be used for MFA should a token be requested. Using a mobile phone to access Duo Mobile push notifications is the most secure way to authenticate into University systems.

Phone Call

Click Call Me to send a phone call to your registered phone. Answer the call and press any key on your phone to approve and log in. Make sure you save this phone number (847-467-9000) as one of your contacts (with a name like Northwestern Duo) so you can recognize it!

MFA Notification Comparison

To request a consultation for your particular scenario, contact the IT Support Center, or your school or department technical support representative.

Table key: illustration of duo app mobile phone Duo Push*      illustration of duo app mobile phone Hardware Tokens       illustration of duo app mobile phone Passcode       illustration of duo app mobile phone Phone Call 

Scenario Notification Option

I have a mobile device and an internet connection.

     illustration of duo app mobile phone  illustration of duo app mobile phone  illustration of duo app mobile phone

I work in an area where I am unable to use my mobile device.

     illustration of duo app mobile phone
I frequently travel internationally and sometimes have limited internet connection.      illustration of duo app mobile phone  illustration of duo app mobile phone   illustration of duo app mobile phone
I cannot use a phone for authentication.      illustration of duo app mobile phone
I have limited or no cell phone coverage.      illustration of duo app mobile phone   illustration of duo app mobile phone
I don’t have a smartphone.     illustration of duo app mobile phone   illustration of duo app mobile phone

*Recommended

"Remember Me"

You have the option to check a "Remember me" box, which will bypass the need to use MFA for subsequent logins for 30 days. You will, however, still need to use your NetID and NetID password for each login. Understand how "Remember me" works.

Manage Your Registered Devices

You can manage your registered device(s*) at any time, including:

The University continues to be proactive in using various technologies to protect further personal employee data and the data of the entire University community. As members of the University community, it is everyone's responsibility to take steps to protect your NetID password that will ultimately protect access to sensitive information on Northwestern administrative and departmental data systems.

Last Updated: 15 April 2021

Get Help Back to top