<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008C3jaPSAROkta Classic EngineDevices and MobilityAnswered2024-04-30T09:18:25.000Z2017-08-31T15:58:28.000Z2018-02-28T22:55:43.000Z
Limit access to SAML application to OMM enrolled devices only.
I'm trying to create a sign-on policy for a SAML app that will only allow access from devices that have been enrolled into OMM.  Currently a user can hit "dismiss"  at the enrollement prompt and still acess the app with Okta Mobile app.  Is there a way to block until a user sucessfully enrolls?

kbazp likes this.
  • j5v7c (j5v7c)

    They gave a demo of this at Oktane17 with Salesforce app where a user is forced to enroll the device to access the app. I believe they mentioned this works even if you have a third party MDM. Not sure if this was in beta or EA but you may want to reachout to Okta.
  • PeterP.41491 (Customer)

    Hmm... so it doesn't sound like it's a feature that's built into Okta MDM (since third party MDM can be used)?  Were they talking about pushing out a client-side cert with MDM and then having Adaptive Multi Factor feature that's supposed to check for the presence of that client cert?
  • PeterP.41491 (Customer)

    Yeah... I'm familiar with device trust.... We're currently testing it and it's only for windows (currently) hence doesn't solve the Android / IOS problem. If you can think of anything else that might work for mobile devices just holar. I'm surprised this hasn't come up more often for paid mdm product... Again thanks for your response! Sent from my Android phone using TouchDown (www.symantec.com)
    Expand Post
This question is closed.
Loading
Limit access to SAML application to OMM enrolled devices only.