Passkeys
UW-Oshkosh IT is currently testing synced passkeys in a private preview. If you’re not part of this preview you’ll NOT be able to complete these steps. However, we’re excited about synced passkeys and hope to have more to share in the future.
Passkeys are a faster and more secure way to login to your NetID. They use securely stored digital keys, so instead of typing a password and waiting for a Microsoft Authenticator push or SMS code, you just use your face, fingerprint or device PIN.
Passkeys are:
Easy to use: No more remembering passwords or resetting authenticator apps.
Always with you: Synced securely to your cloud account (like iCloud or Google), so they automatically move to your new mobile device without you losing access.
Phishing-resistant: They can’t be tricked out of you by fake websites.
Cross-device compatible: You can use them on your phone, tablet, or computer.
Where Should I Store My Passkey?
When creating a passkey, you’ll need to choose where to store it, this determines the devices you can use it on. If you use a mix of Apple, Android and Windows devices, you may want to register a passkey for each ecosystem.
Built-in Options
These are built-in into your device’s operating system.
Apple Passwords → Syncs passkeys across iOS, iPadOS and macOS
Google Password Manager → Syncs passkeys across Android devices and Google Chrome
Windows → Sync passkeys across Microsoft Edge
How to Set Up Your Passkey
Setting up a passkey usually takes less than 60 seconds, just follow the steps below.
For the smoothest experience, create your first passkey on your mobile device.
If you start on a computer, the passkey often stays “trapped” there, preventing you from using it to sign-in on your phone. You can always create additional passkeys on other devices as needed later.
Go to your Entra ID Security Info page on the device you want to use for your passkey
Tap or click Add sign-in method > Select a Method > Passkey > Next
A security dialog opens on your device and asks where to save the passkey.
Options displayed vary depending on your browser and device operating system.
After you're redirected to Security info, you can change the default name for your new passkey if you choose.
Tap or click Done to finish registering your passkey.
Passkey Manager Overview
Passkey Manager | Windows | macOS | iOS/iPadOS | Android |
|---|---|---|---|---|
iCloud Passwords and Keychain | N/A | Natively built-in macOS 13+ | Natively built-in iOS 16+ | N/A |
Google Password Manager | Built-in to Chrome | Built-in to Chrome | Built-in to Chrome or Google app | Natively built-in except Samsung Android 9+ |
Other passkey managers (such as 1Password, Bitwarden) | Check for app or browser extension | Check for browser extension | Check for app | Check for app Android 14+ |
Frequently Asked Questions
What is the sign-in experience like?
Your passkey should be automatically suggested at the sign-in screen or after you’ve entered a username. If it’s not look for the option to “Sign in another way” or “Use your face, fingerprint, PIN or security key instead.”
Safari on macOS | Chrome, Edge and other browsers |
Passkeys from iCloud Keychain will be automatically suggested when you select the username field on the sign-in screen or after you’ve entered a username. | Passkeys from Google Password Manager automatically suggested when you select the username field on the sign-in screen. If you’re using iCloud Keychain you’ll need to enter a username and then choose iCloud Keychain when prompted to use a saved passkey initially to grant Chrome access to iCloud Keychain. |
iOS and iPadOS | Android |
|
|
Can I sign-in with a passkey on a device where it isn’t synced?
Yes! Cross-device sign-in allows you to use a passkey stored on your mobile device (like an iPhone or Android) to sign in to a separate device, such as desktop or a laptop where your passkeys aren't synced.
How it works
Enter your username: You may be automatically prompted to use your face, fingerprint, PIN or security key, if not choose this option
Choose where to use a saved passkey from: Select “Use a phone or tablet” or “Use passkey from a device with a camera”
Scan the QR Code: Since the computer doesn't have your passkey, it will display a QR code. Open the camera app on your phone and scan the code.
Verify: Your phone will prompt you to authenticate using your face, fingerprint, or PIN.
Success: Once verified on your phone, the computer will automatically log you in.
Both the computer and your phone must have Bluetooth turned on.
Does the university see my fingerprint or face?
No. Your biometric data (face or fingerprint) never leaves your personal device. It is stored securely on your phone or computer’s security module. When you sign in, your device simply tells the system, "User verified," and releases the cryptographic key. UW-Oshkosh only receives the digital key, not your biometric data.
Why isn't my passkey popping up?
If the prompt doesn't appear automatically, you may need to click “Use your face, fingerprint, PIN or security key instead” or "Other ways to sign in." Also, ensure your browser's autofill settings are active.
Passkey Manager Documentation
iCloud Passwords and Keychain
Supported Platforms
Natively built-in: iOS, iPadOS and macOS
Documentation
Google Password Manager
Supported Platforms
Natively built-in: Android and Chrome OS
With Chrome app: iOS, iPadOS, macOS and Windows
Documentation
1Password
Supported Platforms
With app: Android, iOS, iPadOS and Windows
With browser extension: Chrome, Edge, Firefox and Safari
Documentation
Bitwarden
Supported Platforms
With app: Android, iOS, iPadOS and Windows
With browser extension: Chrome, Edge, Firefox and Safari
Documentation
Dashlane
Supported Platforms
With app: Android, iOS, iPadOS and Windows
With browser extension: Chrome, Edge, Firefox and Safari
Documentation