This article explains why the event system.sms.send_okta_push_verify_message appears in the system logs even when Short Message Service (SMS) authentication is not in use. It describes the specific user enrollment actions that trigger this event and how to modify the configuration to prevent these messages.
- Okta Verify
- System Logs
- Authenticators
- Okta Classic Engine
- Okta Identity Engine (OIE)
- Short Message Service (SMS)
The event occurs when a user enrolls in Okta Verify and selects Can't scan? and then Text me a setup link during the enrollment process. Okta sends an SMS containing a download link for the Okta Verify application. This message is generated by the Okta Verify enrollment process, not the SMS Authenticator.
To prevent these messages and block the SMS setup option for users, perform the following steps:
- Navigate to Security > Authenticators.
- Locate Okta Verify and select Edit.
- Disable the Any method option that allows sending setup links via SMS.
- Navigate to Security > Authenticators > Enrollment.
- Ensure the Phone Authenticator remains disabled to prevent SMS-based authentication.
This configuration ensures users can enroll in Okta Verify only via higher-security methods, eliminating SMS-based setup links.
