Forum Discussion
FabianUni
Apr 15, 2026Copper Contributor
MFA Options for Employees without Phones
Hello everbody, we're currently trying to implement MFA in our company, but approximately 1/10 of our employees have a workphone and are not allowed to use their personal phone. Since we also recen...
Jamony
Jul 08, 2026MCT
Hi, very normal problem, and it is good you are thinking about it before rollout.
For employees without phones, I would look at:
1. FIDO2 security keys.
2. Windows Hello for Business on managed devices.
3. Temporary Access Pass for onboarding.
4. Hardware OATH tokens if your licensing and process support them.
5. Shared-device workflows if the users do not have dedicated devices.
I would avoid making personal phones the only path. It creates support pain and can become an HR/privacy issue. A small set of well-managed security keys is usually much cleaner.