Cisco Meraki 2FA: How to Set Up an Authenticator App
Your Cisco Meraki dashboard account controls your organization's networks, devices and administrator settings. Meraki calls the feature two-factor authentication (TFA or 2FA) and uses time-based one-time passwords (TOTP) from an authenticator app. Meraki recommends Duo Mobile but says any TOTP-compliant app works, so Authenticator App - Novaz can supply your codes.
Turning on 2FA for Cisco Meraki adds a second layer of protection, so a stolen password alone isn't enough to get in. Cisco Meraki secures sign-ins with an authenticator app — set it up once and you're protected on every login.
2FA methods Cisco Meraki supports
- Authenticator app (TOTP)
Before you start
- A valid Meraki dashboard username (your email address) and password
- Authenticator App - Novaz installed on your iPhone or iPad
- The Meraki dashboard open on a computer, so the setup page is on a different screen from your phone
- Ideally a second organization admin with Full permissions, who can approve a 2FA reset if you're ever locked out
Part 1: Turn on 2FA in Cisco Meraki
- 1
Open My Profile
Log in to the Meraki dashboard and open the "My Profile" page from the top right of the screen.
- 2
Select Set up two-factor authentication
Scroll to the section labeled "Two-factor authentication" and select "Set up two-factor authentication". The next page lists the steps under "Set up app".
Part 2: Add Cisco Meraki to Authenticator App - Novaz
- 3
Add Meraki in Authenticator App - Novaz
Open Authenticator App - Novaz, tap the + button and scan the code shown under "Set up app". Use "Meraki" as the account name, then tap "Save".
- 4
Note the current code
Authenticator App - Novaz now shows a code for your dashboard account. It changes every 30 seconds, so have the current one ready.
Part 3: Confirm and finish
- 5
Verify your device
Back on the dashboard, enter the current code into the "Code" field under "Verify your device".
- 6
Select Continue, then OK
After verification, select "Continue", then select "OK" to turn on two-factor authentication. The dashboard logs you out as soon as you select "OK".
- 7
Log in and note your one-time codes
Log in again: after your password, the dashboard asks for the current code from Authenticator App - Novaz. Then go back to "My Profile", scroll to "Two-factor authentication" and store the eight "One-time codes" somewhere secure.
- 8
Save a way to recover your account
If Cisco Meraki offers backup or recovery codes, download them or write them down and store them somewhere safe. They are how you get back into your account if you ever lose your phone. If it doesn't, check how Cisco Meraki recovers accounts before you need it.
If something goes wrong
- The dashboard rejects the code: codes change every 30 seconds, so enter the newest one. Also make sure your iPhone sets its date and time automatically (Settings > General > Date & Time).
- There's no two-factor setup under "My Profile": Meraki is upgrading its identity system, and MFA setup is temporarily unavailable for a small group of accounts. Contact Meraki support if you urgently need it.
- You still use SMS codes: SMS MFA was retired on 17 November 2025, so after an SMS login the dashboard sends you straight to the authenticator (TOTP) setup wizard. From an active SMS setup you can also click "Set up offline access on a mobile device" on "My Profile".
- SMS still looks enabled after you switched: the dashboard uses the most recently enabled method, so a finished authenticator setup is the active one.
- You can't turn two-factor authentication off: the organization setting "Force users to set up and use two-factor authentication" overrides your ability to disable it.
Checked against Cisco Meraki's own help pages on September 25, 2026. Menu names can change, so these pages have the current path:
How to recover your Cisco Meraki account
Meraki gives you eight one-time codes after setup, listed under "My Profile" > "Two-factor authentication" > "One-time codes". Each works once in place of a code from Authenticator App - Novaz, and "Generate a new set of one-time codes" replaces all eight, voiding any unused old ones. Without them, Meraki Support can disable 2FA once it has positively identified you, but not over the phone: create a case from the Meraki Support Home page with the "No dashboard Access?" option, using the account's email address and the full name of your organization. If a second organization admin with Full access exists, they must approve by commenting on the case in the dashboard; otherwise Support checks details about your organization and sends a DocuSign form to sign. If "Force users to set up and use two-factor authentication" is on, it must first be turned off in every organization the account belongs to.
Frequently asked questions
- Do I have to use Duo Mobile?
- No. Meraki recommends Duo Mobile, but you can generally use any TOTP-compliant authenticator app, including Authenticator App - Novaz. Meraki also names Google Authenticator as an example.
- How do I move Meraki to a different authenticator app?
- Turn two-factor authentication off first, then set it up again. On "My Profile", select "Turn off two-factor authentication", verify your password, then follow the setup steps above with the new app.
- Can an admin make two-factor authentication mandatory?
- Yes. An organization admin with Full permissions can turn on "Force users to set up and use two-factor authentication". It applies to everyone in the organization, including new administrators.
Generate your Cisco Meraki codes in Authenticator App - Novaz
Free, offline, and encrypted. One tap for every 6-digit code.
Get the appMore Other guides
Novaz is not affiliated with, endorsed by, or sponsored by Cisco Meraki. Cisco Meraki and its logo are trademarks of their respective owner and are used here for identification only.



