---
title: "Duo 2FA for Students"
canonical: "https://kb.uconn.edu/space/IKB/26022051860/Duo%202FA%20for%20Students"
format: markdown
---
The two-factor authentication service is available to UConn students. They can enroll at [netid.uconn.edu](http://netid.uconn.edu).

## What is Two Factor Authentication?

Two-factor authentication (2FA) protects the login process and prevents unauthorized access to your data. 2FA works by adding another layer of protection. It requires two forms of identification before access is provided. For the UConn service, you first log in with what you know (Your NetID) and then verify that it is you logging in by answering a prompt on your second factor (a device in your possession). This way, if your NetID credentials are stolen and that person tries to log in as you, you can block them by denying access on the second factor. 

## Duo Mobile and Duo Push      

At UConn, we use Duo for the 2FA service. Students will have full access to 2FA through the Duo Mobile app, the most popular and convenient way to use 2FA. The app can be downloaded on either a tablet or smartphone.  

> ⚠️ If you are a student that does not have a mobile phone that supports Duo Mobile, please contact the ITS Technology Support Center to have your access to Phone/SMS extended. Additionally, Hardware Tokens are available for purchase at an additional cost.

The app is easy to set up and use once it is installed. The service takes, at most, five minutes to set up on your device.

1. Have the device you wish to install the app on.
2. Go to [http://netid.uconn.edu](http://netid.uconn.edu) and log in.
3. Click **My NetID **in the navigation bar.
4. Select **Manage 2FA**.
5. Click on **Add and Manage Devices **and follows the prompts on the screen.

> ✅ For detailed instructions, see [Setting Up a Mobile Phone for 2FA](https://uconn.atlassian.net/wiki/spaces/IKB/pages/10789815076).

Once you have the app installed and turned on 2FA protection for services, you will receive prompts on Duo Push when you log in to services behind Single Sign On. After you enter your NetID credentials, you will receive a message on your phone and can open the push notification. Tap **Approve** if it is you or tap **Deny** if it is not to block fraudulent access.

![image](media://b2242e4d-4e22-456f-9cfe-7c3faefccb95)

You can also choose to generate a passcode when logging in. After you enter your NetID credentials, you will be given a random passcode through the Duo Mobile app. This passcode is available for one use only and can be randomly generated however many times you want. Enter the passcode into the passcode section of 2FA to verify your identity. 

The Passcode Generator will not send you notifications.   

> ✅ Once you use Duo to authenticate, you can click the button for “Trust this browser”. When you log in to services behind Single Sign On on the device and with the same browser, you will not be prompted to authenticate with Duo for 30 days.

> ⚠️ Remember to **Turn On** notifications. Otherwise, you will not get notified of any logins unless you open the app.

## Questions and Information

Listed below are links to different IT articles pertaining to any questions regarding 2FA and how to install it. If the information you need is not here, scroll down to the bottom of the article and check the **Related Articles** section for more information.   

- [Overview of Two Factor Authentication](https://uconn.atlassian.net/wiki/spaces/IKB/pages/10726900331)
- [Logging In with 2FA](https://uconn.atlassian.net/wiki/pages/createpage.action?spaceKey=ikb&title=Logging%20In%20with%202FA%20-%20OLD&linkCreation=true&fromPageId=26022051860)
- Setting up 2FA on a [Tablet](https://uconn.atlassian.net/wiki/spaces/IKB/pages/10736632548) or [Mobile Device](https://uconn.atlassian.net/wiki/spaces/IKB/pages/10789815076)