The Number Challenge in Okta Verify provides an extra layer of protection during the authentication process by presenting the user with a randomly generated number that they must enter into the application to prove device ownership. Administrators can enable this feature directly in the Admin Console for both Okta Classic Engine and Okta Identity Engine (OIE).
- Okta Identity Engine (OIE)
- Okta Classic Engine
- Okta Verify
- Multi-Factor Authentication (MFA)
How does the Okta Verify Number Challenge function?
Review the following sequence to understand how the Okta Verify Number Challenge operates during the authentication process.
- The user selects Get a push notification in the sign-in instructions when accessing a protected resource.
- Okta displays a number in the sign-in instructions.
- Okta Verify displays a notification with a Review option on the mobile device.
- The user taps Review and selects the number on the device that matches the number shown in the sign-in instructions.
- Okta verifies the sign-in attempt only if the numbers match, ensuring the user initiated the request. The user can optionally tap Cancel to deny the sign-in attempt. The Related References section provides details about the sign-in attempt origin.
What are the steps to enable the Number Challenge in Okta Classic Engine?
Navigate to the Multifactor settings in the Admin Console and edit the Okta Verify configuration to enable the Number Challenge feature.
- Navigate to Security > Multifactor.
- Select the Factor Types tab and choose Okta Verify.
- Select Edit in the Okta Verify Settings section.
- Select the Enable Number Challenge checkbox.
- Select Save.
What are the steps to enable the Number Challenge in Okta Identity Engine?
Navigate to the Authenticators settings in the Admin Console and edit the Okta Verify verification options to require a number challenge.
- Navigate to Security > Authenticators.
- Select the Setup tab.
- Locate Okta Verify and select Edit from the Actions dropdown menu.
- Locate the Okta Verify Push setting in the Verification options section and select the Require number challenge checkbox.
- Select Save.
