Multi-factor Authentication
Use this topic if you need to set up, manage, or recover multi-factor authentication (MFA). MFA is required for all Nonprofit Administrators and Managers signing in to Blackbaud Verified Network. Set up MFA when you first sign in, save your recovery code, or recover access if you lose your authenticator method.
Note: For nonprofit access issues after sign-in, see Recover Access and Troubleshoot Sign-In. To create or connect a Blackbaud ID account, see Sign In and Account Setup.
Tip: MFA methods are mobile authenticator apps (recommended) or SMS text messaging where available. Note that SMS text messaging is not available in all countries. You receive a six-digit code plus one 24-digit recovery code. Save your recovery code in a secure location—you can use it once if you lose access to your device.
Set Up MFA
MFA is required when you first sign in as a Nonprofit Administrator or Manager. Choose between a mobile authenticator app (recommended) or SMS text messaging.
-
Sign in to Blackbaud Verified Network with your Blackbaud ID email address and password.
-
On the Set up multi-factor authentication page, select Mobile authenticator app (most secure) or SMS text messages, then select Next.
Mobile Authenticator App
-
Install a mobile authenticator app on your mobile device, such as Google Authenticator, Authy, or Microsoft Authenticator.
-
Scan the QR code with your device. If you cannot scan it, select Can't scan? Try this and enter the alternate code in your app.
-
Select Continue.
-
Enter the code from your app in Confirmation code.
-
Select Confirm. To bypass MFA in this browser for 30 days, select Remember this browser for 30 days.
-
Copy the recovery code and store it in a secure location, then select Next.
Tip: Copy your 24-digit recovery code and store it in a secure location immediately. You can use it once if you lose access to your authenticator app or phone. After it is used, you must generate a new recovery code in your Blackbaud ID profile.
SMS Text Messages
Warning: For some countries outside the United States, Blackbaud ID doesn't support text messages, and you must receive confirmation codes through an authenticator app.
-
Enter the phone number, including the country code, and select Send code.
-
Within five minutes, enter the code in Verification Code and select Verify code. If it expires, select Send new code.
-
Copy the recovery code and store it in a secure location, then select Next.
Tip: Copy your 24-digit recovery code and store it in a secure location immediately. You can use it once if you lose access to your authenticator app or phone. After it is used, you must generate a new recovery code in your Blackbaud ID profile.
After setup, you return to Blackbaud Verified Network and are signed in. This confirms that MFA setup is complete. For the original detailed article and screenshots, see Set Up Multi-Factor Authentication (MFA).
Save and Use Your Recovery Code
The recovery code generated when creating your account can be used once if you lose access to your authenticator app or phone. You can enter this during sign in when prompted. After it is used, you must generate a new recovery code in your Blackbaud ID profile.
Add or Update Your Recovery Phone
Manage your recovery phone in your Blackbaud ID profile at app.blackbaud.com. A recovery phone is a backup way to verify your identity if you cannot use your authenticator app. If you cannot use your recovery phone or recovery code, see Recover access and troubleshoot sign-in.
Change Your MFA Method
Manage MFA in your Blackbaud ID profile. Changes apply to all Blackbaud products connected to the account.
-
Go to app.blackbaud.com and open the Multi-factor authentication tile.
-
Select the pencil icon, then select Manage.
-
Select Change setup and follow the setup steps to choose an authenticator app or SMS.
Change Your MFA Phone Number
From Manage in the Blackbaud ID MFA settings, select Add or Update recovery phone, enter the number, and select Save. A changed phone number does not receive codes sent to the old number.
Additional Resources
Troubleshooting
Why Am I Being Asked for MFA Again?
Blackbaud ID can request MFA again when the browser is not remembered, your MFA settings changed, or additional identity verification is required.
Frequently Asked Questions
How Does MFA Work?
Multi-factor authentication (MFA) protects your account by requiring two or more pieces of evidence when you sign in. After you enter your email address and password, Blackbaud ID sends a six-digit confirmation code to a personal device you choose. This second factor prevents unauthorized access even if someone obtains your password.
You can receive codes through a mobile authenticator app or SMS text messaging where supported. An authenticator app can generate codes when your device is offline or has no cellular service, while SMS requires cellular or Wi-Fi connectivity.
Note: SMS text messaging is not available in every region. Use a mobile authenticator app when SMS is unavailable.
Common authenticator apps: Google Authenticator, Authy, Microsoft Authenticator.