<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007hYbTCCA0Okta Classic EngineAuthenticationAnswered2022-06-22T17:56:54.000Z2022-06-07T06:31:20.000Z2022-06-22T17:56:54.000Z

AaquibN.62475 (Customer) asked a question.

OKTA MFA Email Verification Code is not sent on User Login - Okta Developer Account.

Hi,

I have the use case to receive an email with verification code/link from OKTA on every login. I have configured the MFA using Email and set the Email Authenticator as to be used for 'Authentication and recovery', however I am not getting the email code on every login. After entering the password, I am directly login to the Okta dashboard. Only when I am changing password and updating profile information, I am getting a verification code sent to my registered mail id. I need the code to be sent for every login. Am i missing any configuration?

 

Thank You.

 


  • Mihai N. (Okta, Inc.)

    Hi @AaquibN.62475 (Customer)​ , Thank you for reaching out to the Okta Community!

     

     

    When implementing MFA, you have to consider three main things: 

    1. Enabling/Enrolling an MFA type (in your case email) and enforcing its use are two separate processes.  
    2. After you've enrolled your users, you have to set up Sing-on Policies that explicitly Prompt users for MFA. 
    3. Depending on the number of policies that you have set up, you need to make sure that the one you are expecting to apply is set to the proper Priority in the list of Sign-on policies in a way that matches the way the user logs in.

     

    You might also want to check the rules of the policy to see if the user matches the conditions:

    Is the user assigned to the proper Group for the policy?

    Is the user signing in form the proper IP?

    and so on...

     

    image 

    Hope it helps! 

    Expand Post
    Selected as Best
  • Mihai N. (Okta, Inc.)

    Hi @AaquibN.62475 (Customer)​ , Thank you for reaching out to the Okta Community!

     

     

    When implementing MFA, you have to consider three main things: 

    1. Enabling/Enrolling an MFA type (in your case email) and enforcing its use are two separate processes.  
    2. After you've enrolled your users, you have to set up Sing-on Policies that explicitly Prompt users for MFA. 
    3. Depending on the number of policies that you have set up, you need to make sure that the one you are expecting to apply is set to the proper Priority in the list of Sign-on policies in a way that matches the way the user logs in.

     

    You might also want to check the rules of the policy to see if the user matches the conditions:

    Is the user assigned to the proper Group for the policy?

    Is the user signing in form the proper IP?

    and so on...

     

    image 

    Hope it helps! 

    Expand Post
    Selected as Best
  • AaquibN.62475 (Customer)

    Thank You @Mihai Negoita.

    This helps. I was using the default sign-on policy. After creating a new policy as per your shared snapshot, I am able to get the MFA code on every login. Thank You so much for your response.

    • Mihai N. (Okta, Inc.)

      That's great to hear! Remember to mark my answer as "best" to highlight it and make it easily available for other members of the Okta Community to find should they face the same issues as you!

This question is closed.
Loading
OKTA MFA Email Verification Code is not sent on User Login - Okta Developer Account.