Okta first-party App Switcher Feature Not Evaluating the Authentication Policy
Last Updated:
Overview
The App Switcher feature allows admins to swap between the end-user dashboard and the admin dashboard without being prompted for MFA, even though the policy requires them to provide MFA at every sign-in to the Admin Dashboard.
Applies To
- App Switcher
- Okta Identity Engine (OIE)
- Early Access (EA) features
Cause
The "Okta first-party App Switcher" feature is enabled in Features > Early Access.
Solution
This behavior is expected. When the "Okta first-party App Switcher" feature is enabled and an admin is authenticated in the admin dashboard, the session will be kept in the background until the idle session set at the admin dashboard level expires.
