<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

Unable to Disable Windows Hello Confirmation in Windows Okta Verify

Okta Classic Engine
Multi-Factor Authentication
Okta Identity Engine

Overview

End-users cannot disable the Windows Hello Confirmation toggle in Windows Okta Verify when the enrollment settings mandate Required or Required with biometrics only. Adjusting the Okta Verify enrollment settings to Preferred allows end-users to disable the setting. The Windows Hello Confirmation setting appears greyed out in the Windows Okta Verify application.

Windows Hello Confirmation toggle

 

Applies To

  • Okta Identity Engine (OIE)
  • Okta Classic Engine
  • Windows Okta Verify
  • Windows Hello Confirmation
  • Okta Verify Enrollment Settings

Cause

The Okta Verify enrollment settings mandate Required or Required with biometrics only.

Enrollment

Solution

How do end-users disable the Windows Hello Confirmation setting?

 

Adjust the Okta Verify enrollment settings to Preferred in the Admin Console to allow end-users to disable the Windows Hello Confirmation setting.

  1. Navigate to the Admin Console.
  2. Go to Security and select Authenticators.
  3. Select the Actions dropdown menu for Okta Verify and choose Edit.
  4. Change the enrollment settings to Preferred.

Enrollment

 

Related References

Loading
Okta Support - Unable to Disable Windows Hello Confirmation in Windows Okta Verify