<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

Trigger Okta Silent Probe to Suppress the Username Prompt

Okta Identity Engine
Okta Verify

Overview

Okta prompts users to enter a username during the passwordless FastPass authentication flow, rather than providing a seamless sign-in. This occurs because the silent probe activates only if an administrator explicitly sets the device state to Registered in a rule within the application authentication policy. Configure the application sign-on policies to evaluate the device registration state to trigger the silent probe and suppress the username prompt.

Applies To

  • Okta Verify
  • Fastpass
  • Okta Identity Engine (OIE)

Cause

The suppression of the username prompt relies on the Okta silent probe mechanism. This behavior relates directly to how Okta evaluates device conditions during authentication. The silent probe activates only if an administrator explicitly sets the device state to Registered in a rule within the application authentication policy. If there are no rules in the policy to check for a Registered device state, the silent probe does not execute, and Okta prompts the user to enter a username manually. The user does not need to explicitly match the rule that requires the registered device; the mere presence of the condition in the policy is sufficient to activate the silent probe.

Solution

How is the Okta silent probe triggered to suppress the username prompt?

 

Add or modify a rule within the application policy to evaluate the device registration state by navigating to the Authentication Policies, selecting the policy, adding a rule, and setting the device state to Registered.

  1. Navigate to Security > Authentication Policies.
  2. Select the policy to modify.
  3. Select Add Rule or edit an existing rule.
  4. Enter a descriptive name for the rule.
  5. Locate the Device State condition under the Device section.
  6. Set the Device State to Registered.
  7. Configure the remaining access conditions and select Save.

 

NOTE: Depending on specific access requirements, setting the device state to Registered, Unmanaged is also effective for triggering the probe. Once this rule is active in the policy, the Okta silent probe triggers during the authentication flow, successfully suppressing the username prompt.

 

Loading
Trigger Okta Silent Probe to Suppress the Username Prompt | Okta Support