<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
Touch ID on Mac Does Not Work for Okta Verify Authentication After Adding a Second Fingerprint
Multi-Factor Authentication
Okta Identity Engine
Overview

Adding a secondary or tertiary fingerprint to Touch ID on macOS causes an authentication error in Okta Verify. Resolving this issue requires disabling and re-enabling Touch ID, re-adding the Okta Verify account, or reinstalling the Okta Verify application.

When a user adds a second fingerprint for use with Okta Verify, Okta generates the following error:

 

Your organization requires Touch ID. Click Enable Touch ID to keep using this account.

 


Okta verify app           error  


 

 

Applies To
  • Okta Verify Application
  • Okta Identity Engine (OIE)
  • macOS
  • Touch ID
Cause

When a second Touch ID profile is added to the device, the OS invalidates the private keys associated with the Secure Enclave, which causes Okta Verify's stored credentials to become inaccessible and triggers the need for re-enrollment.

Solution

How is the Touch ID fingerprint error resolved in Okta Verify?

 

See the following troubleshooting steps to resolve this issue:

  1. Disable and re-enable TouchID.
  2. Delete the account within Okta Verify and add it again.
  3. Uninstall and reinstall Okta Verify on the device.
Loading
Touch ID on Mac Does Not Work for Okta Verify Authentication After Adding a Second Fingerprint