
a5lyc (a5lyc) asked a question.
Trying to set up agentless desktop single sign on. testing with some users, but they get prompted for set up okta verify? why do they get prompted if they arent using mfa, just SSO? how do I disable it? I have okta verify and SSO works seamless but I only have it because i need it to access the admin console

Hi @a5lyc (a5lyc) , Thank you for reaching out to the Okta Community!
It sounds like you have an MFA enrollment policy in place. This is not directly tied to your DSSO configurations. Check under Okta Admin Dashboard→ Security→ Multifactor→ Factor Enrollment.
Here is where you can find the relevant information on the subject:
https://help.okta.com/en-us/Content/Topics/Security/policies/about-mfa-policies.htm
That being said, using MFA is best practice and highly recommended from a security standpoint.
If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you.
Hope my answer helps!
--------------------------------
The Okta Community Catalysts Program is now live. Collect online badges when you participate in the Okta Help Center Questions community. Learn more here.