Touch ID Not Working on Mac After a macOS Update? How to Fix It
By Tech Entertainer Team · 2026-10-03

You updated macOS, pressed your finger on the sensor, and nothing happened. Or the Mac keeps asking for a password. Touch ID problems after an update usually come from one of five causes, and you fix most of them in under ten minutes.
Work through the steps below in order. Each one is cheaper and less disruptive than the next.
Why did Touch ID stop working after the macOS update?
Touch ID stops after an update for one of three reasons: a normal security rule asks for your password, a setting reset during the install, or the stored fingerprint data needs to be rebuilt. Hardware failure is the least common cause.
Check the easy one first. macOS asks for your password instead of a fingerprint in these cases:
- You restarted the Mac, which every update does.
- You have not unlocked the Mac in 48 hours.
- You failed five fingerprint attempts in a row.
- You pressed the power button and held it to shut down.
If the sensor works after you type your password once, nothing is broken. Lock the screen with Control-Command-Q and try your finger again. If it works, you are done.
How do you check the Touch ID settings first?
Open System Settings, then Touch ID & Password. Confirm each feature you want is switched on. An update sometimes leaves one of them off.
- Click the Apple menu, then System Settings.
- Select Touch ID & Password in the sidebar.
- Look at your fingerprint list. You should see at least one entry.
- Turn on Unlock your Mac, plus any others you use, such as Apple Pay, Passwords AutoFill, or the App Store.
If the list is empty, the update dropped your fingerprints. Click Add Fingerprint, enter your password, and scan the finger again. Hold your finger flat and lift it between scans, as macOS asks.
A Mac holds up to three fingerprints per user account and five in total across all users. If you are at the limit, delete an old one first.
How do you clean the sensor and your finger?
Wipe the sensor with a dry, lint-free cloth and dry your hand. Moisture, hand lotion, and flour or cooking oil all lower the match rate. Dry or cracked skin does the same.
If a clean, dry finger still fails, scan it again as a new entry. A second entry for the same finger often improves recognition, since macOS stores several angles. Name the entries so you know which is which, for example "Right index 2".
On a MacBook, the sensor sits at the top right of the keyboard, next to the power key. On a desktop Mac, the sensor is on a Magic Keyboard with Touch ID. Pair the keyboard again if the sensor is silent but the keys type fine.
How do you reset your fingerprints?
Delete every fingerprint, restart, and add them again. This clears corrupted biometric data, which is the usual fix after an upgrade across major macOS versions.
- Open System Settings and select Touch ID & Password.
- Hover over a fingerprint, click the x shown on its right, and enter your password to confirm.
- Repeat until the list is empty.
- Choose Apple menu, then Restart.
- Return to Touch ID & Password, click Add Fingerprint, and scan each finger again.
Enter your password at the login screen after the restart. Touch ID stays unavailable until you do.
Why is Touch ID not working only for sudo in Terminal?
macOS updates replace /etc/pam.d/sudo, which erases any Touch ID line you added by hand. Since macOS Sonoma, the supported fix lives in a separate file named sudo_local, and updates do not touch it.
If you used Touch ID for sudo before the update and Terminal now asks for your password, do this:
sudo cp /etc/pam.d/sudo_local.template /etc/pam.d/sudo_local
sudo nano /etc/pam.d/sudo_local
Find the line below and delete the # at the start so the line is active:
#auth sufficient pam_tid.so
Press Control-O, Return, then Control-X to save and exit nano. Open a new Terminal window and run sudo ls. The Touch ID prompt appears.
Touch ID for sudo does not work inside tmux or screen sessions unless you add the pam_reattach module. It also does not work over SSH. Those are limits of the design, not signs of a fault.
What if Touch ID fails only with the lid closed?
A MacBook in clamshell mode, connected to an external display, hides the built-in sensor. Touch ID will not respond because your finger has no way to reach it.
Two fixes work:
- Open the lid a few inches and press the sensor, then close it again.
- Buy a Magic Keyboard with Touch ID, which works with Apple silicon Macs and lets you unlock from the external keyboard.
Confirm the keyboard shows as connected in System Settings, then Bluetooth. A Magic Keyboard with Touch ID requires a Mac with Apple silicon.
What do you try on an Intel Mac with a T2 chip?
Intel MacBooks from 2018 to 2020 use the T2 security chip for Touch ID, and resetting the SMC sometimes restores the sensor. Apple silicon Macs have no SMC reset; a plain shutdown and restart does the same job.
For an Intel MacBook with a T2 chip:
- Shut down the Mac.
- Press and hold the right Shift key, the left Option key, and the left Control key for seven seconds.
- Keep holding the three keys and press and hold the power button. Hold all four for another seven seconds.
- Release the keys, wait a few seconds, and press the power button to start the Mac.
For an Apple silicon Mac, choose Apple menu, Shut Down, wait thirty seconds, then press the power button.
How do you rule out a software conflict?
Start in Safe Mode. If Touch ID works there, a login item or a security tool is interfering after the update. Remove the most recently installed one.
On an Apple silicon Mac:
- Shut down, then press and hold the power button until "Loading startup options" appears.
- Select your startup disk.
- Hold Shift and click Continue in Safe Mode.
On an Intel Mac, restart and hold Shift until the login window appears.
Try Touch ID at the login window and in System Settings. If it works, restart normally and remove third-party VPN clients, endpoint security agents, or password manager helpers one at a time. Password managers with their own biometric unlock deserve a close look first, since a stale integration blocks the system prompt.
When does Touch ID need a repair?
If Touch ID fails in Safe Mode, after a fingerprint reset, and after a restart, the sensor or its connection to the logic board is faulty. Software changes do not repair this.
Two signs point to hardware:
- System Settings shows a message such as "Touch ID is not available on this Mac" or shows no Touch ID section at all.
- The sensor fails even after you reinstall macOS.
Book a Genius Bar visit or an Apple Authorized Service Provider appointment. The Touch ID sensor on a MacBook is paired to the logic board, so third-party repairs of the key or the board disable it. Back up with Time Machine before you hand the Mac over.
Frequently asked questions
Why does my Mac ask for a password instead of Touch ID after a restart?
macOS requires your password after every restart, after 48 hours without an unlock, and after five failed fingerprint attempts. Enter the password once and Touch ID returns for the session. This rule protects your data and applies on every Mac.
Why did Touch ID stop working for sudo in Terminal after an update?
Updates overwrite /etc/pam.d/sudo. Create /etc/pam.d/sudo_local from the template file and uncomment the pam_tid.so line, as shown above. The file survives updates.
Quick checklist
- Enter your password once after a restart.
- Clean the sensor and dry your finger.
- Confirm each feature is on under Touch ID & Password.
- Delete all fingerprints, restart, and add them again.
- Rebuild the sudo_local file if only Terminal fails.
- Test in Safe Mode to rule out a software conflict.
- Book a repair if every step fails.
Frequently Asked Questions
Why does my Mac ask for a password instead of Touch ID after a restart?
This is expected behavior. macOS requires your password after every restart, after 48 hours without an unlock, and after five failed fingerprint attempts. Enter the password once and Touch ID works again for the rest of the session.
Why did Touch ID stop working for sudo in Terminal after an update?
macOS updates overwrite /etc/pam.d/sudo, so any line you added there disappears. Put the Touch ID setting in /etc/pam.d/sudo_local instead, because updates leave the file alone.
