Multifactor Authentication, macOS passkey setup
iCloud Configuration
If you haven't already, begin by signing your Mac into iCloud.
From the Apple menu located in the top left corner of the screen, choose System Settings. At the top of the sidebar, click Sign In with your Apple Account. Enter your Apple Account email address and password. When you sign in, iCloud is turned on automatically.
If you do not have an Apple Account or prefer not to use your personal Apple Account, create a work Apple Account e.g. user@uillinois.edu by clicking "Don’t Have an Account?”. Entering payment information is not required to create an Apple Account.
To protect university data, be sure to turn off iCloud Drive Desktop & Documents Folders. From the Apple menu located in the top left corner of the screen, choose System Settings. Click your name, then click iCloud. Click Drive (or iCloud Drive). Turn off Desktop & Documents Folders. Click Done.
When installing software on your Mac, continue to use University-provided mechanisms whenever possible, and use Apple's App Store only for exceptions when the software is unavailable through university channels.
For additional guidance, see these Apple support articles:
- Set up iCloud on your Mac
- How to create a new Apple Account
- Turn off Desktop & Documents Folders on your Mac
Passkey Setup
After you have confirmed that you have signed into iCloud on your Mac, connect to the Microsoft Security info page at https://mysignins.microsoft.com/security-info. Login with your @uillinois.edu username.

Authenticate using your password.

Finish authenticating using two factor authentication, e.g. with Duo.

The Microsoft Security info screen will appear after you log in.

To setup a passkey, click the "+ Add sign-in method" option at the Security info screen.

From the list of sign-in methods, click the "Passkey" option as shown below.

Click "Next" to begin creating a passkey.

Click "Next" to continue generating a passkey.

Your Mac will prompt you to save the new passkey. Confirm that "Passwords" is selected under the "Save In" field. Touch the fingerprint reader on your keyboard to finish saving your newly created passkey on your Mac.

A blue check mark will be displayed to confirm that your newly created passkey was save successfully on your Mac.

Select a name for your new passkey. This passkey name will be saved in the Microsoft Security info screen. For example, the name "Mac Passkey" is shown below. Click next.

A green check mark will be displayed to confirm that your passkey was successfully created. Click done.

The Microsoft Security info screen will display your new passkey. For example, the "Passkey (Synced)" entry named "Mac Passkey" is shown below.

This completes the macOS passkey setup. Logging in with your passkey instead of a password and 2FA challenge should now be your primary method of logging in to university websites when using your Mac.
The first time you visit a university web site after configuring your passkey, you may need to change your web browser authentication settings. If the University web site that you visit prompts you to enter your password, click "Use your face, fingerprint, PIN, or security key instead" to use your passkey instead of a password and 2FA challenge. An example is shown below.

