<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

Configure Biometrics as Preferred or Required for Okta Verify Sign-In

Multi-Factor Authentication
Okta Identity Engine

Overview

Administrators can configure biometric authentication, such as fingerprint or facial recognition, as preferred or required when users sign in with Okta Verify. This configuration determines whether users must enable biometrics during setup and whether they can disable the feature later.

Applies To

  • Okta Identity Engine (OIE)
  • Okta Verify
  • Multi-Factor Authentication (MFA)

Solution

How is biometric authentication configured for Okta Verify?

Navigate to the authenticator settings in the Okta Admin Console to edit the Okta Verify configuration and set user verification to either required or preferred.

  1. Sign in to the Okta Admin Console.
  2. Navigate to Security > Authenticators.
  3. Select Actions and then Edit on the Okta Verify authenticator.
  4. Choose whether User Verification is Required or Preferred.

 

Administrators Can Set Biometric Verification as a Requirement

When administrators require user verification, users must enable biometrics on all platforms during setup, and Okta Verify Push requires biometric verification during authentication.

Okta verify

 
Okta verify

 

NOTE: Users cannot disable biometrics after setup is complete.

 

Administrators Can Set Biometric Verification as a Preference

When administrators set user verification as preferred, users can enable biometrics during setup or later in the application, and they can disable biometrics at any time after setup is complete.

Okta verify

 
Okta verify

 

Related References

Loading
Okta Support - Configure Biometrics as Preferred or Required for Okta Verify Sign-In