<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
Register FIDO2 (WebAuthn) Keys under both Custom Domain URL and Okta Org URL
Multi-Factor Authentication
Overview

The FIDO2(WebAuthn) factor is registered per domain in cases where there are two domains: a custom domain and the default one. The factor must be registered on both domains.

Applies To
  • Okta Identity Engine (OIE)
  • Multi-factor Authentication (MFA)
  • WebAuthn
Solution
  1. Log in to https://[domain].okta.com or custom domain URL.
  2. Enter the username and password, then Sign In.
  3. The user will be prompted for MFA. Use any available MFA that is set to be optional, except YubiKey.
  4. In the upper right corner, click Settings.
  5. Under Security Methods > Security Key or Biometric, click Set up Another.

    Security Methods 
  6. The user will then be prompted again to validate the account.
  7. Select Setup.
    Setup button 
    Pop-up 
  8. The user will be prompted to create a passkey for the current URL they are logged into. Click Continue.
    Continue button

  9. Additional Security Key or Biometric should now be added.
    Additional Security Key 


Related References

Loading
Register FIDO2 (WebAuthn) Keys under both Custom Domain URL and Okta Org URL