How To Use the Microsoft Authenticator App for Windows Phone to Enable Two-Factor Authentication on Facebook

Our old favourite PFE Gregg O’Brien runs through using the Microsoft Authenticator app for Windows Phone to make his social networking experience more secure.

If you are like me, social media is a heavily-used feature of technology in your daily life. I use social media to keep in touch with friends and family, and also as an avenue to communicate with Microsoft customers. Obviously, this makes social media sites such as Facebook a tool that reflects my identity and reputation: If I post something positive, readers identify the positive message as coming from me and my reputation is perceived as positive. Conversely, if I post something negative or offensive, readers identify the offensive content as coming from me and my reputation declines or may even be completely destroyed, depending on the severity of the offense.

I am a pretty heavy Facebook user, so keeping my account secure is critical. In order to keep my account safe, I enabled two factor authentication using the Microsoft Authenticator App for Windows Phone, which is available from the Windows Phone Store.

It’s not apparent at first, but Facebook can work with just about any authenticator app - not just the iPhone and Android apps that Facebook provides!

So how do we do it? Let’s have a look:

1) First head over to the Windows Phone Store and download the Microsoft Authenticator App. This will be the application that we use to generate our single-use codes.

2) Once the application is installed, head over to (you enabled secure browsing for Facebook as a default right? If not, now would be a good time to do this as well).

3) Once logged into Facebook, click on the settings (gear) icon at the top right corner of the screen, and click on Account Settings

4) In the top left corner, click on Security

5) Next to Code Generator, click Edit

6) Click on the second option Set up another way to get security codes.

7) You will be presented with a screen like this:
The secret key is what we are after here. Keep this window up on the screen.

8) Launch the Microsoft Authenticator app on the Windows Phone device.

9) Click the “Add” “+” at the bottom of the screen.

10) Create a name for the account. In my case I just typed Facebook. Enter the secret key from the Facebook window, and click the save icon at the bottom of the screen.

11) Now you will see a scrolling bar and a numeric code on the screen.

12) Enter the current code into the window on Facebook. You should see a caption appear that says It worked!. Click on Confirm to save the changes.

13) Now click on Edit from the Login Approvals item.

14) Place a check mark in the box for Require a security code to access my account from unknown browsers and click Save Changes. A popup will appear explaining the Login Approvals feature. Click on Get Started to proceed.

15) Now you have the ability to specify a phone number that a security code can be texted to if you are unable to use the Authenticator app. Click on Continue.

16) If you have added a phone number to Facebook already, it will send you a text message with a code to enter. If you have not added a phone number, or wish to change the phone number linked to your Facebook account, you can do so now as well.

17) Click on Continue and then decide whether or not you want Facebook to give you a one week grace period where you can forego the two factor authentication step when logging in from unknown browsers. Click on Close to finish the configuration.

Now when you log into Facebook from an unknown browser (i.e. one not previously seen by Facebook), you will receive a prompt like this:

Simply launch the Microsoft Authenticator app on your phone and type in the code displayed for Facebook:


Afterwards, you will be prompted to save your browser so that Facebook will not prompt you for a code again from that browser.
If you wish to be prompted for a code every time, you have to ensure that you click Don’t Save.

And there you have it! One more way to keep your online identity safe!

[Ed note: It doesn’t just work with Facebook – it also works with Microsoft (formerly Windows Live) Accounts, Google Accounts, and others!]

Posted by Tristan Kington, MSPFE Editor, whose online reputation is in tatters. Tatters! I tell you.

Comments (11)

  1. Zmago says:

    Your article is good. But as you are talking about security… isn’t little bit weird that you’ve blurred your secret key but you left QR code visible? Anyone can generate this secret key with google authenticator or any other QR app… including your
    facebook username. So in this case somebody just need to guess your password because everything else you’ve already exposed here. Please be careful with your personal data.

  2. Omer says:

    I tried to follow this process but every key it generates it says that it is wrong. Is the Autheticator app broken or facebook system?

  3. karthik says:

    i found no Login Approvals in my account.

  4. psla says:

    Does not work any longer (I just tried to set it up, it generates the code, but Facebook says it is incorrect).

  5. psla says:

    (it works for Google & Microsoft acconuts naturally)

  6. ola says:

    Same thing for me: I cannot use Microsoft Authenticator instead of Google Authenticator for a third party service required for my work. There seems to be something in the MS app that works differently from the Google app.

  7. Talderon says:

    Yeah, something is broken as it no longer works for my WP app. 🙁

  8. Davidmr67 says:

    Does not generate Microsoft 7 digit codes only 6 almost locked me out of my own account because Microsoft has a bunch of iincompetent boobs working for them. I wish they would pull their heads out of their video games and do some real work like fixing
    all the broken Microsoft product. I am moving to Apple next laptop I get I hate Microsoft

  9. paul says:

    Microsoft two factor authentication is utterly useless.
    1. WIndows Phone doesn’t recognize QR codes. Turns out, you have to go into ‘Lenses’, then select ‘Bing’ and point and then… it recognizes a QR code, shows some auth link on screen but has no idea what the hell to do with it. NEither do i.
    2. So go the route of tapping in numbers. I get a code from the auth app, enter on web site… and it says its wrong. It isn’t. I try again, and again. It says wrong, but they match exactly.
    Security? Utterly pointless, unless it works.

  10. LumiaEntourage says:

    Thanks, It worked perfect. connect with LumiaEntourage on Facebook.

  11. PeterJ says:

    I scanned the app bar code and loaded my live email account in as the account and there has been a constant rolling of security numbers for the past 30 minutes or so. My phone screen shows "Accounts" and then a numeric code which seems to load and then
    a new numeric code loads and the cycle continues. What have I done?

