How to Add an Authentication Policy in Okta
Last Updated:
Overview
Users who gain access to Okta through a global session policy do not automatically have access to applications. Administrators can create a unique Okta Authentication Policy for each application in the organization or share a single policy across multiple applications. Add an Authentication Policy in the Okta Admin Console by navigating to the Authentication Policies page, defining the rules, and assigning the desired applications.
Applies To
- Okta Identity Engine (OIE)
- Authentication Policy
- Multi-Factor Authentication (MFA)
Solution
How is an Okta Authentication Policy added?
Create a new authentication policy, configure the policy rules, and assign applications to the policy in the Okta Admin Console.
- Sign in to the Okta Admin Console.
- Go to Security > Authentication Policies, and select App sign-in.
- Select Create policy.
- Enter a name and description for the policy, then select Create policy. NOTE: A Catch-all Rule is included by default.
- Select Add rule and enter a name for the new rule.
- Complete the remaining options for the use case, then select Save.
- Select the Applications tab, and choose Add app to assign one or multiple applications to the authentication policy.
NOTE: Use the Access Testing Tool to verify whether the policy functions as expected.
