This article explores an issue Windows users face while using Okta RDP MFA, known as the Okta MFA Credential Provider for Windows. Specifically, when the Send push automatically option is selected, the MFA widget does not retain this setting for subsequent logins.
- Okta RDP MFA
- Okta MFA Credential Provider for Windows
The issue arises when users attempt to log into a Windows system using Okta RDP MFA/Okta MFA Credential Provider for Windows. The MFA widget opens an Internet Explorer (IE) Webviewer to prompt the MFA challenge. Due to the design of the IE Webviewer, which does not store cookies, the Send push automatically setting (which requires cookies for storage) cannot be retained.
There is currently no established workaround for this issue. Furthermore, no option or configuration exists that can hide the Send push automatically setting. As a result, users must manually select this option each time they authenticate via Okta RDP MFA. It's advisable to monitor Okta's updates for any future solutions that might address this issue.
