<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
How to Determine If Factor Sequencing Is Enabled on a Classic Okta Org
Administration
Okta Classic Engine
Okta Identity Engine
Overview
This article describes how to determine if factor sequencing is enabled on a classic Okta Org.
 
Applies To
  • Factor Sequencing
  • Okta Classic Engine 
  • Multi-Factor Authentication (MFA)
Solution

In the Sign-On policy, for any rule, click Edit and check if the Factor Sequence option is enabled under Authentication methods for the organization

Sign-On policy

Factor Sequence option  

Visible changes for the end user when enabled: 

  • The login page layout will be changed to 2 pages, 1 for the username and the other for the password.


Good to know regarding the authentication methods in the Sign-On policy rules:

  • Password/Any IdP > The users are allowed to log in with their username and password.
  • Password/AnyIsP + Any Authenticator > The users are allowed to log in with their username, their password, plus any MFA they already enrolled.
  • Factor Sequence > Users will be required to log in using their username and one or two Multi-Factor Authentication (MFA) options selected in the Sign-On policy rule. To configure the factor sequence, it is important to ensure that all users already possess the chosen factors. Without these factors, users may encounter issues during the login process.
Loading
How to Determine If Factor Sequencing Is Enabled on a Classic Okta Org