---
title: Enable Users MFA
description: Read and update the PingOne MFA enabled setting that controls whether a user can authenticate using MFA actions
component: pingone-api
page_id: pingone-api:mfa:users/enable-users-mfa/index
canonical_url: https://developer.pingidentity.com/pingone-api/mfa/users/enable-users-mfa/index.html
llms_txt: https://developer.pingidentity.com/pingone-api/llms.txt
docs_for_agents: https://developer.pingidentity.com/build-with-ai/docs-for-agents.md
revdate: 2026-08-11
section_ids:
  mfa-settings-data-model: MFA settings data model
  response-codes: Response codes
---

# Enable Users MFA

The multi-factor authentication settings (MFA) control whether a user can authenticate using MFA actions. This endpoint enables or disables MFA capability.

|   |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| - | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
|   | You can enable multi-factor authentication by setting `mfaEnabled` to `true` with [POST Create User](../../../platform/users/users-1/create-user.html), [POST Create User (Import)](../../../platform/users/users-1/create-user-import.html), or [PUT Update User MFA Enabled](#put-update-user-mfa-enabled). You cannot update `mfaEnabled` with [PUT Update User](../../../platform/users/users-1/update-user-put.html) or [PATCH Update User](../../../platform/users/users-1/update-user-patch.html). |

For information about user MFA device management, refer to [MFA devices](#mfa-devices).

## MFA settings data model

| Property     | Type    | Required | Mutable   | Description                                                                                                           |
| ------------ | ------- | -------- | --------- | --------------------------------------------------------------------------------------------------------------------- |
| `id`         | String  | Required | Immutable | The user resource's unique identifier.                                                                                |
| `mfaEnabled` | Boolean | Required | Mutable   | Whether multi-factor authentication is enabled. This attribute is set to 'false' by default when the user is created. |

## Response codes

| Code | Message                                  |
| ---- | ---------------------------------------- |
| 200  | Successful operation.                    |
| 204  | Successfully removed. No content.        |
| 400  | The request could not be completed.      |
| 401  | You do not have access to this resource. |
| 404  | The requested resource was not found.    |
