Desktop MFA for Windows Users Cannot Use Offline Factors After Upgrading to Okta Verify 6.11
Last Updated:
Overview
Okta corrected a bug in Okta Verify 6.11 and later versions that previously allowed unlisted offline factors to function, requiring administrators to explicitly add the needed offline factors to the configuration. Desktop MFA for Windows users cannot use, view, or enroll in offline factors following the upgrade.
Applies To
- Okta Identity Engine (OIE)
- Okta Device Access
- Windows Okta Verify 6.11 and later
- Desktop MFA for Windows
Cause
Okta corrected a bug in Okta Verify 6.11 and later versions where offline factors not listed in the AllowedFactors configuration remain available. When the AllowedFactors configuration contains any value other than the default asterisk (*), the list omits the necessary offline factor entries.
Solution
How does the AllowedFactors configuration restore offline factors?
To restrict the list of factors shown to the end users, update the AllowedFactors configuration to explicitly include the necessary offline factors.
To show all available factors to the end user, update the AllowedFactors configuration to "*"
