
n5u8h (n5u8h) asked a question.
Hello -
We have Cisco ISE with Okta MFA configured for our switches. The issue I am running into is when we change a device in ISE to be a Okta device so it will send MFA out when trying to log into the device only 1 of the methods work. I can choose to have MFA through a code that is sent out to phones & that works fine. The other option would be a push to the Okta Verify app on the phone. You will get the push notification but it will not allow you into the Switch. Says access denied. If I already have the app open waiting for the push it will work when received but will not work if the app was not previously opened. Looking to get some insight & a possible fix for this. Thank you.

Hi, @n5u8h (n5u8h)
Thank you for posting on our Community page!
I suggest you check the most common settings that could give out an error in Okta Verify:
A) The device time is set to Automatic.
B) Your network connection is stable.
C) Okta Verify notifications are turned on.
D) The latest version of Okta Verify is installed on your device.
If all this checks out, try re-enrolling the device.
Thank you for reaching out to our Community and have a great day!
_____________________________________________________________________________
Community members help others by clicking Like or Select as Best on responses. Try it today.
_____________________________________________________________________________