<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007wUG69CAGOkta Classic EngineAuthenticationAnswered2026-01-09T09:00:29.000Z2022-08-12T06:39:45.000Z2022-08-16T12:06:55.000Z

b0ak8 (b0ak8) asked a question.

Users Sharing Their Passwords

Hi,

 

Facing an issue in our organization that some of the users are sharing their passwords with each other and even they are accepting that on their Okta Verify by calling each other and asking to accept the access. Have u faced that and do u have any technical solution for that instead of adding policies and starting sending warnings?

 

 


  • flaviu.vrinceanu1.5628408972654734E12 (Customer Success Service Delivery)

    Hi @b0ak8 (b0ak8)​,

     

    Thank you for posting on our Okta community page!

     

    I have done some research and manage to find the following ways to improve security:

    • Easiest way would be to use Passwordless Authentication: https://www.okta.com/demos/passwordless-authentication-with-okta/
    • Alternatively, for your SWA applications, you can uncheck the Password reveal box, so the users cannot see their application passwords. This option can be found under the Sign on tab on the application profile.
    • Additionally, for Okta Verify, you can enable Require Touch ID or Face ID for Okta Verify (only on iOS). Please note this will apply to all users. This option can be found under Security - Multifactor - Factor Types - Okta Verify.
    •  

    Other than the above, I recommend to configure the sign on policies based on your organisation needs.

     

    Thank you for reaching out to our Community and have a great day!

     

    ____________________________________________________________________________________________

    The Okta Community Catalysts Program is now live. Collect online badges when you participate in the Okta Help Center Questions community. Learn more here.

    Expand Post
  • b0ak8 (b0ak8)

    Thank you Flaviu, will check how I am going to deal with that as users are accepting the authentication by themselves so if I have added that as well they will still accept/provide that to their colleagues, I was thinking if we can only allow the access if the sign in Okta verify External IP were from the same external IP but unfortunately this cannot be done.

This question is closed.
Loading
Users Sharing Their Passwords