Skip to main content

New Microsoft authentication process when signing in to the Letsignit application

C
Written by Customercare

Microsoft has recently updated its Entra ID authentication system to support passkeys. Since September 1, 2026, Microsoft may automatically offer these authentication methods to users. 

This change is related to Microsoft and does not originate from the Letsignit application.

Why does this window appear in Letsignit?

The window appears during the Letsignit application’s SSO sign-in process.

Depending on the device and browser, users may see:

  • a request to insert a USB security key;

  • a window offering a choice between an iPhone, iPad or Android device and a security key.

Both screens correspond to the same new Microsoft authentication flow.

What should I do to sign in?

Click the “Cancel” button.

This closes the passkey request and allows you to return to the usual sign-in process. You can then authenticate as before, using your company’s standard SSO process and your usual authentication method.

Do I need to use a USB key or my phone?

No, unless your company has specifically asked you to use a security key or a mobile passkey.

What should the IT administrator check to prevent this request from appearing?

To prevent this request from appearing automatically, the Microsoft Entra ID administrator should check the following settings:

  1. Disable the registration campaign: Microsoft Entra ID > Authentication methods > Registration campaign > State: Disabled

  2. Check the System-preferred authentication setting and disable it or exclude the affected users. This setting can generally be found under: Microsoft Entra ID > Authentication methods > Settings.

  3. Check the Passkey (FIDO2) policy and make sure that it is not mandatory for users of the Letsignit application.

  4. Check the Conditional Access and Authentication Strength policies to ensure that no policy requires a passkey or security key for Letsignit.

  5. If necessary, remove a passkey already registered for the user: Microsoft Entra ID > Users > select the user > Authentication methods

The IT administrator should not disable MFA globally. Only the settings related to passkeys should be adjusted in order to restore the usual SSO sign-in process.

Microsoft sources:

#LetsignitApplication #LetsignitLogin #LetsignitSSO #MicrosoftSSO #MicrosoftEntraID #LetsignitAuthentication #Passkey #FIDO2 #authentication

Did this answer your question?