Login failed error message is encountered on Desktop MFA for Windows using online factors (OV Push, OV OTP). Offline access using the OV OTP code is working.
- Okta Device Access
- Desktop MFA for Windows (DMFA)
- Okta Identity Engine (OIE)
The reported behavior happens when the Desktop MFA authentication policy rule is changed to Allowed with password + another factor and this will not be satisfied by the DMFA client.
The authentication policies on the DMFA app do not apply to the desktop login as they do for other apps through a web browser. The credential provider validates the password first and then only calls the app in Okta for the OV Push challenge.
Change the Desktop MFA Authentication Policy rule to Allowed with possession factor.
