Set Up Mailbox MFA
TenantCore can guide you through Microsoft’s OATH/TOTP enrollment and securely protect the resulting secret. MFA setup in TenantCore is optional.Start the workflow
- Open the mailbox.
- Open its security controls.
- Choose Set up MFA.
- TenantCore opens Microsoft’s Security Info experience and keeps the TenantCore setup flow available.
In Microsoft Security Info
Follow the Microsoft setup flow for an authenticator application. When Microsoft displays the QR-code step:- choose the option to use a different authenticator application
- continue until Microsoft shows the QR code
- select Can’t scan the QR code?
Copy the secret into TenantCore
Copy the manual OATH/TOTP secret into TenantCore. Do not copy screenshots or recovery information. TenantCore stores the secret through its credential-vault workflow.Complete verification
TenantCore can generate the current six-digit TOTP code from the vaulted seed. Enter that code into Microsoft’s verification screen. TenantCore then confirms the enrollment state before marking MFA active.After setup
The mailbox security view can show:- MFA active/inactive state
- enrollment state
- current MFA code when explicitly requested
- credential synchronization state