JeremiasM.62863 (Customer) asked a question.
I have configured the email authenticator as a recovery authenticator, and I have enabled secondary email in the "Optional User Account Fields" as described in the article below:
User activation emails are still sent to both secondary and primary emails. We need this to work because the password reset email does not help because end users need okta to access their Google Workspace email.
I have tested this with users who have secondary email configured but when the end user clicks the "forget password" link the email is only sent to their work email.
This secondary email address field seems to be a new feature so maybe this is just a bug. Hope this bug then finds the right team at Okta. The documentation in many places refers that this should still be an available feature. Appreciate all the help!


Yes! Ok so ensure a few things:
Out of curiosity, are the users that are having this issue falling under a different policy/rule? You can have multiple policies scoped to groups and to different authentication providers (Okta vs AD). Do these apply and are all of the above complete?