<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
Configure Okta FastPass for Seamless Application Access
Multi-Factor Authentication
Okta Identity Engine
Overview

Okta FastPass enables seamless application access without requiring credential entry. Okta Verify performs a silent check and authenticates the end-user using Okta FastPass as the Multi-Factor Authentication (MFA) method.

Applies To
  • Multi-Factor Authentication (MFA)
  • Okta FastPass
  • Okta Identity Engine (OIE)
Solution

How is Okta FastPass configured for seamless authentication?

 

Configure the Global Session Policy, ensure device registration, and set the Authentication Policy rules to allow seamless application access.

  1. Set Establish the user session with to Any factor used to meet the Authentication Policy requirements, and set Multifactor authentication (MFA) is to Not required

Global Session Policy MFA.

  1. Enroll users in Okta Verify and ensure devices are registered.
  2. Configure an Authentication Policy Rule where the Device state is set to Registered (either Not managed or Managed).

Authentication Policy Device State

  1. Configure Possession factor constraints with or without the presented options.
  2. To enforce Fastpass usage, set User must authenticate with to either Any 1 factor type or Possession factor, and set Authentication Methods to Allow Specific Authentication Methods: Okta Fastpass.
Authentication Policy other

 

NOTE: If the configuration does not meet these requirements, Okta prompts the end-user to click Next after entering credentials or select Sign in with Okta FastPass if the option is enabled.

Loading
Configure Okta FastPass for Seamless Application Access