Wolverine Identity Program Successes

Okta Sign-In for Web Applications

U-M successfully transitioned to Okta for web-based sign-ins and multi-factor authentication on Feb 25, 2026. This transition affected students, faculty, staff, and sponsored affiliates at all campuses, alumni, and retirees. The enrollment period ahead of launch saw high adoption, with over 90% of active affiliates enrolling their UMICH account in advance. This led to a relatively uneventful launch day for the Wolverine Identity Program team and minimal interruption for users accessing their accounts.

Expanded Options for MFA

With the deployment of Okta to campus in February 2026, campus community members have more options for completing MFA prompts beyond the familiar app-based push notification. Okta offers Okta FastPass on Desktop which gives campus the option to sign in without using a phone and, if an individual has opted in, with a biometric or PIN-based passwordless experience.

Self-Service SSO Configuration

In May 2025, Identity and Access Management (IAM) released the Application Management and Provisioning (AMP) Tool, a self-service web application for U-M administrators to obtain the necessary configurations for single sign-on in their services (campus network or VPN required for sign in). With AMP, campus administrators no longer have to submit tickets and wait for processing time in order to configure their SSO-enabled applications as well as their SSH and RDP connections. If you are an application owner and have not yet transitioned to Okta, be sure to do so before Duo is retired on December 1, 2026. See instructions for transitioning to Okta on this page.