Overview

JMU Information Technology (IT) announces Okta, a modern, cloud-based, Identity and Access Management (IAM) platform that:

  • Manages all eIDs and passwords at JMU and provides secure access into every major system
  • Handles multi-factor authentication (MFA) through the Okta Verify app
  • Provides a jumping-off point to access many JMU systems (feature coming soon)
What's new since Okta went live?

Okta replaced Duo and other IT systems in March 2025. Following the change:

  • You only need to change your password once per year.
  • A new password standard of at least 16 characters takes effect.
  • Passwords and authenticators are now manged at mylogin.jmu.edu.
  • The university eID format has changed for all new users.
Upcoming Project Phases

Now that Phase 1 is complete (Okta is live), IT will continue to implement new features, settings, and processes in additional phases.

Phase 2, to be completed before June 2025, includes:

  • Direct Okta single sign-on for new applications
  • An assessment of the Okta browser plug-in 
  • Provisional access, meaning new faculty will be granted access to email and instructional systems earlier in the hiring process
  • Workflows to support account removal of applicants who do not matriculate
  • Disablement of affiliate accounts for inactivity

Phase 3, to be completed by August 2025, includes:

  • Tiles in the Okta Dashboard for additional Administrative and Business applications
  • Extended access for adjunct instructors
  • Extended access for withdrawn students to complete coursework
  • Changes to the AP Faculty grace period for MyMadison (30 days)
  • Deployment of Okta FastPass as a new authenticator
  • MFA on JMU secure machines and VDI (for employees)
Related News
Okta Updates
What is MFA or Okta?
Need Help?

Information Technology Help Desk at (540) 568-3555, IT Service Portal or helpdesk@jmu.edu

Please also see the frequently asked questions below.

Frequently Asked Questions (FAQs)

Your invitation to enroll is an email to your personal email inbox with the subject "Welcome to JMU Okta!" or "Preparing for JMU Okta."  The email contains an Activate Okta Account link, referred to below as your activation link. You must have at least one compatible device with you to begin enrollment. Most people enroll with a smartphone running iOS 17, Android 12, or newer. If you do not have a smartphone that can be updated to these specs, you must obtain a Yubikey hardware token. When ready, choose one enrollment method below.

Enroll from a Computer:

  1. Click the activation link in your invitation email. Misplaced the email, or link expired?
  2. Some people (applicants and some alumni) will be asked to set a password. If applicable, click Set Up and set your Okta password before proceeding.
  3. If you are enrolling a Yubikey, follow this link and complete these steps.
  4. To enroll a smartphone, click Set Up under the Okta Verify description.
    1. A QR code will appear. Keep this screen open.
    2. On your smartphone, download the Okta Verify app from the App Store (iOS) or Google Play (Android).
    3. Open the app, click Get Started, and click through the next two prompts.
    4. After clicking Add Account, select Organization (Work, school, company) as the Account Type.
    5. Skip Add Account from Another Device.
    6. On the Do You Have a QR Code? screen, click Yes, Ready to Scan.
    7. Scan the QR Code from the step above.
    8. Finish the Okta Verify setup process. JMU recommends that you Allow Notifications for push authentications.
  5. When you have enrolled at least one device, your Okta enrollment is complete.

Enroll from a Mobile Device:

  1. Download Okta Verify from the App Store (iOS) or Google Play (Android).
  2. From your invitation email, click your activation link. Misplaced the email, or link expired?
  3. Some people (applicants and some alumni) will be asked to set a password. If applicable, click Set Up and set your Okta password before proceeding.
  4. Click Set Up under the Okta Verify description.
  5. Select whether you want to be sent an email enrollment link or a text message enrollment link.
  6. When you receive your email or text message, click the enrollment link inside.
  7. Finish the Okta Verify setup process. JMU recommends that you Allow Notifications for push authentications.

Looking for our simple enrollment steps?

Okta does not support this type of authentication. Read more.

If you are new to JMU, you will find your welcome or invitation email/link in your personal email inbox. You must have a valid activation link to enroll in Okta. You may request a new activation link after clicking the expired one. If you have trouble with this, or if you have misplaced the email, contact the IT Help Desk to receive a new invitation email. 

To access JMU systems without a smartphone compatible with Okta Verify, you will need a device known as a Yubikey. Read more.

Yes, in March 2025, JMU moved to a revised eID format for all new users (students, employees, affiliates, etc.). While the previous or legacy eID format was based upon the user's name, the new eID is randomized and non-identifiable. If you currently have a legacy eID (based on your name), you are not required to change it.

You may only request a new eID if you currently have an eID in the legacy format (the eID is based on your name). Any individual who requests an eID change will receive an eID in the new format (see previous FAQ question). Changes are granted on a one-time, non-reversible basis and can be requested for any reason. Be aware that changing your eID also changes your JMU and/or Dukes email address(es).

To request a new eID, visit the IT Service Portal or click Request to Change Legacy eID.

Related: University Policy 1345 Legal and Chosen Names 

If you report a legal name change to the University, you are not required to change your eID, nor does it happen automatically - a change must be requested.

Back to Top