Authentication registration campaigns
Microsoft's edit ·
Microsoft's commit message in MicrosoftDocs/entra-docs · commit 06cc070 · +7 −3 lines · also on GitHub
⋯ 1 unchanged line
22
title: Run a registration campaign to set up passkey or Microsoft Authenticator
33
description: Learn how to run a registration campaign in Microsoft Entra ID to nudge users toward passkeys or Microsoft Authenticator for stronger sign-in security.
44
ms.topic: how-to
5
−ms.date: 05/04/2026
5
+ms.date: 05/20/2026
66
author: justinha
77
ms.reviewer: marisanchez
88
ai-usage: ai-assisted
⋯ 7 unchanged lines
1616
1717
Registration campaigns support two authentication methods:
1818
19
−
2019
- **Passkey (FIDO2)** — Nudge users to register a passkey, which includes both synced passkeys and device-bound passkeys.
21
−- - **Microsoft Authenticator** — Nudge users to download and set up the Authenticator app for push notifications.
20
+- **Microsoft Authenticator** — Nudge users to download and set up the Authenticator app for push notifications.
2221
2322
> [!NOTE]
2423
> A registration campaign can only target one authentication method at a time. You can't run campaigns for both Microsoft Authenticator and passkeys simultaneously in the same tenant.
⋯ 72 unchanged lines
9796
If the registration campaign state is set to **Enabled**, you can configure the experience for end users by using **Limited number of snoozes**:
9897
- If **Limited number of snoozes** is Enabled, users can skip the interrupt prompt 3 times, after which they're forced to register the targeted authentication method.
9998
- If **Limited number of snoozes** is Disabled, users can snooze an unlimited number of times and avoid registration.
99
+
100
+ > [!NOTE]
101
+ > When **Limited number of snoozes** is enabled, the snooze count is tracked per user and persists across campaign restarts or configuration changes (including targeted method updates). This ensures a consistent and predictable registration experience.
100102
101103
**Days allowed to snooze** sets the period between two successive interrupt prompts. For example, if it's set to 3 days, users who skipped registration don't get prompted again until after 3 days.
102104
⋯ 4 unchanged lines
107109
- **Passkey** — Nudge users to register a passkey (includes both synced passkeys and device-bound passkeys).
108110
109111
1. Select any users or groups to exclude from the registration campaign, and then select **Save**.
112
+
113
+ :::image type="content" source="./media/how-to-mfa-registration-campaign/enabled-passkey-campaign.png" alt-text="Screenshot of the Registration campaign page in the Microsoft Entra admin center showing an enabled passkey campaign with authentication method, snooze settings, and include/exclude targets.":::
110114
111115
## Enable the registration campaign policy using Graph Explorer
112116
⋯ 322 unchanged lines
Microsoft's Markdown source from MicrosoftDocs/entra-docs, © Microsoft Corporation, under MIT. Changed lines with up to 3 unchanged lines around each; ChangeIntel kept this copy 9 Oct 21:34 UTC. The commit date is when the source changed, which can be hours or days before Learn published it.