<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00008bhQ5RCAUOkta Classic EngineAuthenticationAnswered2022-12-28T20:31:57.000Z2022-12-28T14:42:01.000Z2022-12-28T20:31:57.000Z
  • DonF.81354 (Customer)

    Thanks for the question!

     

    You can find more information on FIDO2 (Yubikey) here FIDO2 (WebAuthn)

     

    More information on Okta MFA and downstream links can be found here Multifactor Authentication

     

    As for your question, enabling only this single MFA factor, my answer is yes. For instance, in my org, we only allow a single MFA factor to be chosen when on-boarded to the org. Furthermore, in our case, we enforce the use of this MFA factor at every sign in via the sign-on policies.

     

    In your case, Navigate to Security > Multifactor : and enable "YubiKey" under "Factor Types". You may also want to modify your "Factor Enrollment" policies as well.

     

    Next, under Security > Authentication > Sign-On, you can choose under what conditions you would like to enforce this MFA factor and to what groups.

     

    Hopefully that helps, if not, please provide what you can about your specific org configuration and I would be happy to assist!

     

    Thanks!!

    Expand Post
This question is closed.

Recommended content

Loading
Mandate FIDO2 (Yubikey)