What Is Multifactor Authentication (MFA)?
发布时间:2026-09-02 | 浏览:2
Passwords alone are no longer enough.
MFA adds layers of security beyond passwords, combining factors such as knowledge, devices, and biometrics.
It protects against common attacks such as phishing, credential stuffing, and brute force.
MFA can be flexible and adaptive, adjusting prompts based on risk, role, or location.
Microsoft makes MFA easier to adopt, with simple tools such as Microsoft Authenticator, which is a part of Entra ID MFA.
Defining multifactor authentication
Something you know —a password, passkey , PIN, or security question.
Something you have —a mobile device, smart card, or hardware token.
Something you are —biometrics such as a fingerprint, a face scan, or voice recognition.
Why is MFA important?
Phishing attacks —tricking users into revealing passwords.
Credential stuffing —attackers using stolen passwords from other breaches.
Brute-force attacks —repeated attempts to guess login security details.
How does MFA work?
Enter your username and password.
Provide a second factor, such as approving a push notification, entering a one-time passcode, or using a biometric scan.
Authenticator apps that generate or approve codes.
SMS or voice call one-time passcodes.
Biometric options like fingerprints or face recognition.
Hardware tokens or smart cards.
What is required to set up MFA?
User enrollment —registering a device, biometric, or authenticator app.
Device registration —pairing trusted devices for verification.
Policy enforcement —customizing MFA rules based on role, risk, or location.
MFA vs. 2FA: What's the difference?
2FA might require a password + SMS code.
MFA might require a password + phone notification + fingerprint.
Real examples of MFA
MFA best practices
MFA solutions from Microsoft Security
Stronger protection at scale— safeguard users and data across your organization with enterprise-grade identity security solution, Microsoft Entra ID.
Fast, seamless sign-ins— approve access in seconds with simple, mobile-friendly options like Microsoft Authenticator.
Smarter, adaptive security— only get prompted when risk is detected, reducing interruptions for trusted logins.
More on multifactor authentication
Microsoft Entra ID MFA
Identity and network access
Frequently asked questions
01/ What is meant by MFA? Multifactor authentication (MFA) is a security method that requires more than one form of verification to prove your identity. Instead of relying only on a password, MFA combines factors like something you know (a password or PIN), something you have (a phone or token), and something you are (a fingerprint or face scan) to add extra layers of protection.
What is meant by MFA?
02/ Why is MFA so important? Passwords are often stolen or guessed, making them a common target for attackers. MFA adds a second (or third) layer of security, making it much harder for unauthorized users to access accounts—even if they know your password. This reduces the risk of phishing, credential stuffing, and brute-force attacks while also helping organizations meet compliance and strengthen overall cybersecurity.
Why is MFA so important?
03/ What is required for MFA? To use MFA, you need a primary login credential (such as a username and password) plus at least one additional factor. This could be a mobile device registered with an authenticator app, a biometric identifier such as a fingerprint, or a hardware token. Organizations may also set policies that define when and how MFA is required, often based on user role, device, or risk level.
What is required for MFA?
04/ What is the difference between MFA and 2FA? Two-factor authentication (2FA) is a type of multifactor authentication (MFA) that uses exactly two steps—like a password plus a text message code. MFA goes further by requiring two or more factors, which could include biometrics or additional devices. All 2FA is MFA, but MFA isn’t limited to just two steps. MFA offers more flexibility and stronger protection for sensitive accounts and systems.
What is the difference between MFA and 2FA?
05/ What is an example of multifactor authentication? A common example of MFA is signing in to Microsoft 365: You enter your password, then approve the sign-in with a tap in the Microsoft Authenticator app on your phone. Other examples include using a smart card and fingerprint to connect to a corporate VPN, or entering a PIN and then scanning your face to access a banking app. Each case uses multiple factors to confirm your identity.
What is an example of multifactor authentication?
Follow Microsoft Security