web
You’re offline. This is a read only version of the page.
close
Skip to main content

Announcements

News and Announcements icon
Community site session details

Community site session details

Session Id :
Power Platform Community / Forums / Power Pages / Sign in with email and...
Power Pages
Unanswered

Sign in with email and security code - no password

(0) ShareShare
ReportReport
Posted on by 244

Is it possible to set up MFA, but disable password? To give access with just the e-mail and a security code sent to the email?

 

I'm completely new to Pages - but have some experience with the power platform. I'm trying to create a single point of entry for our clients/customers/users/suppliers to access some very specific core information, stored in Dataverse, solely for this purpose.

 

We have some actors with accounts in a Dynamics CE environment, some with accounts on our website, some with e-mail registered in a proprietary system, without login ability.

 

To avoid having to create duplicate logins or maintaining identities across several providers, I'm trying to come up with a way where we can ensure e-mail ownership, but avoid maintaining passwords distributed.

My idea was to pre-create and sync accounts from all platforms and then only use the e-mail and a security code as the access token. I also the option for individuals to create an account on this platform, without already existing in the other systems. 

(Basically a ticket system, for known and unknown relations, some with existing logins, some with just known e-mails, some without anything.)

I don't know if this is a bad idea, security wise? Or if there are any other ways to solve this? I don't know much about identity providers and how these things are normally handled. And if there are any best practices and build-in functionality, that supports my case. 

Other ideas or suggestions are welcomed.

Categories:
I have the same question (0)
  • oliver.rodrigues Profile Picture
    9,482 Most Valuable Professional on at

    Probably not what you want to hear, but I think you should look at normalizing your data. 

     

    Apart from that, technically you can't change the authentication mechanism of the Portal, and either you use Azure AD B2C (recommended) or Local Authentication, you can't "remove" the password option or add an MFA there.

     

    You can, technically speaking, add functionality with Liquid code that would validate the user e-mail + a token (MFA) that expires after X seconds and show the data. You would need to add lots of flags and control fields in the dataverse to get this working. However this doesn't mean full authentication, this means user is technically anonymous, but have access to a record on specific conditions. 

  • Fubar Profile Picture
    Super User 2026 Season 1 on at

    The only way that I am aware of to achieve something similar is to customize Azure B2C to use a one time passcode, and then use Azure B2C as your portals identity provider.  In this case the user enters their email address to B2C , it sends a code to the user, and the user then enters that code as verification to B2C.

     

     

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

Season of Sharing Community Challenge Winners!

Congratulations to our community stars!

Kudos to our 2025 Community Spotlight Honorees

Expanding mentorship, skilling, and AI innovation

Congratulations to the June Top 10 Community Leaders!

These are the community rock stars!

Leaderboard > Power Pages

#1
sannavajjala87 Profile Picture

sannavajjala87 42 Super User 2026 Season 1

#2
Valantis Profile Picture

Valantis 33

#3
11manish Profile Picture

11manish 20

Last 30 days Overall leaderboard