Skip to main content

One Admin Login, Two Passkeys for Two Different Users

How two people can each register their own passkey on a single shared admin account

Before you start

• The first user must already be able to log in to the admin account.

• Each user needs their own device with a built-in authenticator (Windows Hello, Touch ID or Face ID).

• Both users must know the shared username and password for the admin account.

Step 1: Confirm the identity verification settings are enabled

Go to Setup → Quick Find → Identity Verification and confirm that both checkboxes shown below are ticked:

Let users verify their identity with a built-in authenticator

Let users verify their identity with a security key (U2F or WebAuthn)

If either box is unticked, tick it and save before continuing.

Step 2: Generate a temporary verification code

Still logged in as the first user, click the Profile icon → Settings → Advanced User Details. Find Temporary Verification Code and click Generate.

Make a note of the code and how long it is valid for — it expires, so generate it when the second user is ready to log in.

If you get an error like "Problem Verifying Your Identity", go to Session settings from quick find box, check if Multi Factor authentication is added (If not, please add) and save it.

Step 3: Share the code with the second user

Send the temporary verification code to the second user. They log in to the same admin account using the shared username and password, and enter this code when they are prompted for identity verification.

Step 4: The second user registers their own passkey

Once the second user is logged in, go to Profile icon → Settings → Advanced User Details → Built-In Authenticators and click Add. Complete the prompt on their own device (Windows Hello, Touch ID or Face ID).

Step 5: Both users can now access the admin account

The account now has two registered passkeys. Each user logs in with the shared username and password and verifies with the passkey on their own device. No further verification codes need to be shared.

Did this answer your question?