How to set up the FIDO2 Security Key for Windows 10/11

Presentation

Windows Hello allows the use of many authentication methods, known as passwordless. Here we will see how to configure a FIDO2 security key in Windows 10/11.

Prerequisites

  • Have internet access to configure the key
  • Multi-Factor authentication activated on Azure Services
  • A FIDO2 security Key
  • The following network streams must be accessible
    • *.microsoftonline.com
    • *.microsoftonline-p.com
    • *.msauth.net
    • *.msauthimages.net
    • *.msecnd.net
    • *.msftauth.net
    • *.msftauthimages.net
    • *.phonefactor.net
    • enterpriseregistration.windows.net
    • management.azure.com
    • policykeyservice.dc.ad.msft.net
    • secure.aadcdn.microsoftonline-p.com

Configuration 

  • Go to https://mysignins.microsoft.com/
  • Click Security info
  • Select Add sign-in method

  • Select Security Key and click Add

  • Click Next


  • Enter your account credentials and click Verify

  • Select the type of security key used

Click Next


Select External Security Key or built-in sensor



Click OK


Click OK


Insert your Security Key



Enter the security key PIN Code and click OK


Touch your Security Key


Enter a name of security Key and click Next



Your security key is set up. You can now use your FIDO2 key to validate your authentication on Windows.


Use security key for Windows Authentication

Select FIDO Security Key



Enter your FIDO key PIN



Touch your Security Key


You are now authenticated, you have access to your Windows desktop

Popular posts from this blog

How to implement Applocker with Microsoft Intune

How to reset computer in OOBE mode

Microsoft Intune, Uninstall Win32 app with the company portal