How to Change the Access Token and ID Token Lifetime of Okta Dashboard
Last Updated:
Overview
Administrators cannot change the access token and Identity Token (ID token) lifetimes for the Okta dashboard. The Okta dashboard integrates with the Org Authorization Server, which enforces preset token lifetimes that administrators cannot modify.
Applies To
- Okta Identity Engine (OIE)
- Okta Classic Engine
- OpenID Connect (OIDC) / OAuth 2.0 applications
- JSON Web Token (JWT)
- Org Authorization Server
Solution
Why are the token lifetimes for the Okta dashboard unchangeable?
The Okta dashboard is an Okta-specific application that uses the Org Authorization Server for token requests. Okta does not allow administrators to configure the dashboard to use a Custom Authorization Server. While administrators can change token lifetimes on a Custom Authorization Server, the Org Authorization Server uses preset token lifetimes that remain fixed.
Review the following images of browser HTTP Archive (HAR) logs to observe the authorize request and token request for the Okta dashboard.
