Users with multiple accounts that have the same email prefix cannot log into Okta with just the email prefix because the system cannot determine who they are.
This results in authentication errors such as:
- Password is incorrect
or
- Unable to sign in.
In the Sys Log of the Okta Classic Engine, they can see an error:
- failure: NOT_SPECIFIED
While in Okta Identity Engine (OIE), they would see the error:
- failure: VERIFICATION_ERROR
Examples:
john.smith@domain.com
john.smith@domain.io
-
Okta Classic Engine
-
Okta Identity Engine
-
Authentication
To avoid authentication errors, users with multiple accounts on Okta must use the full email address to log in. This means that instead of using just the email prefix, users must enter the entire email address, including the domain name, to log in successfully. This solution is available for both the Okta Classic Engine and the Okta Identity Engine. By using the full email address, the system can accurately identify the user and authenticate them without any errors.
