Two-factor authentication, commonly called 2FA, adds an important extra layer of security to your email account.
Normally, signing in requires something you know: your password. With 2FA enabled, you also need something you have, such as your mobile phone. After entering your email address and password, you'll be asked for a temporary six-digit verification code.
This extra step can help prevent unauthorized access even if someone obtains your email password.
HDM email accounts support two common methods of two-factor authentication:
Authenticator apps are generally considered more secure because text messages may be vulnerable to interception or unauthorized SIM transfers.
Popular authenticator apps include Google Authenticator, Microsoft Authenticator, FreeOTP, and other apps that support time-based one-time passwords (TOTP).
Some password managers can also generate compatible authentication codes.
Before activating 2FA, make sure you have:
You can access webmail at:
For the strongest protection, we recommend using an authenticator app.
Once setup is complete, you will automatically be signed out.
The next time you sign in, enter your email address and password as usual. You will then be prompted for the six-digit code generated by your authenticator app.
If you use an authenticator app, remember that your 2FA configuration is associated with the authentication information stored on your device.
Before replacing, resetting, or erasing your phone, disable or transfer your authenticator configuration first.
If you lose access to your authentication device before doing this, you may no longer be able to sign in without assistance from HDM.
You can also receive your security code through text messaging.
You will automatically be signed out after 2FA has been activated.
The next time you sign in, a security code will be sent to your configured mobile number.
Once 2FA is active, signing in involves two steps:
Once the verification code is accepted, you'll have access to your mailbox.
While 2FA is enabled, you may be unable to successfully update your primary email password.
If you need to change your email password, you should first disable 2FA, change the password, and then enable 2FA again.
You may need to disable 2FA when:
To disable 2FA:
A confirmation message will appear when 2FA has been disabled.
You can then continue using the account without 2FA or immediately configure a new authentication device or phone number.
If you lose your phone, replace your device before transferring 2FA, or can no longer generate your authentication code, contact Hazel Digital Media (HDM) for assistance.
For security reasons, additional verification may be required before changes can be made to the authentication settings for an email account.
Keeping your email protected is increasingly important because email is often connected to password resets, financial services, business applications, cloud platforms, and other sensitive accounts. Using a strong, unique password together with two-factor authentication provides significantly better protection than relying on a password alone.