<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007Wik3WCAROkta Classic EngineMulti-Factor AuthenticationAnswered2025-10-11T09:00:47.000Z2022-03-23T16:19:03.000Z2022-03-23T17:07:26.000Z

AlexT.54885 (Customer) asked a question.

can we select both sms factor and security_question factor in MFA?

checked the okta doc, oie supports security_question and classic supports okta_sms:

 

security_question - (Optional) Security Question MFA policy settings (✓ OIE).

okta_sms - (Optional) Okta SMS MFA policy settings (✓ Classic).

 

How can we enable both in one group? I am using terraform.

 

Thanks,

Alex


  • b5n6c (b5n6c)

    Hi Alex Tao ,

    You can enable both the MFA factors to the respective groups in identity engine as well as classic engine.

    Identity engine

    1. Navigate to Security > Authenticators
    2. Enable Phone (for SMS) and Security Question from the authenticators list
    3. Create an enrollment policy in which both Phone & Security question as Required and assign the policy to the respective groups.

     

    Classic Engine

    1. Navigate to Security > Multifactor
    2. Enable SMS Authentication & Security Question from the factor types.
    3. Create a Multifactor Policy by making these two as Required and assign the policy to respective groups.

     

    Please do upvote if this address your query.

    Expand Post
This question is closed.
Loading
can we select both sms factor and security_question factor in MFA?