<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008G7VQzSANOkta Classic EngineMulti-Factor AuthenticationAnswered2024-04-30T09:18:25.000Z2017-07-31T07:20:48.000Z2018-01-30T13:16:48.000Z
  • j5v7c (j5v7c)

    This will depend on the number of MFA types that have been configured aginst the Okta tenant and based on the registration policy that you define for the groups of users. If in the admin interface you select "Security", "Multifactor", "Factor Enrollment" policy tab. You can then define policies for different user types/groups, and then associate different rules for MFA option type(s). Below is an example for Admin users, what MFA types, and when the user would be expected to register for them.

    0EM2A000000cF93

     

    0EM2A000000cF98

     

    0EM2A000000cF9D

     

    Hope that helps.
    Expand Post
  • RohitR.11579 (Customer)

    I have done this Kevin. I want to know if there is a option where user can choose which type of multifactor he/she wants out of 5 or 6 factors but he/she have to choose atleast 2 factors for going forward
  • j5v7c (j5v7c)

    Yes, you would use the options of Required or Optional. So as I have on my example policy, admins must enrole for Okta Verify and the Yubikey token, but all others are optional, and Security Question is disabled.
  • kishore.durbhaka (Customer)

    I want to show mfa only once in certain timeframe and per device, can I do that?
This question is closed.
Loading
OKTA MFA Policy