
SuhasM.81827 (Customer) asked a question.
How to restrict a Okta authentication rule to specific IDP ?
In the expression lang I tried to use idpuser.idpName but this did not work. Is there a feature flag or property I can use to check which IDP user belongs to ?
policy

Hi, @SuhasM.81827 (Customer)
Thank you for posting on our Community page!
You can select a certain IdP when creating a Global session policy rule from the ones you previously created in Security— Identity Providers.
Check out the following article on creating a Global session policy rule:
https://help.okta.com/oie/en-us/content/topics/identity-engine/policies/add-okta-sign-on-policy-rule.htm
And this on adding an external IdP:
https://developer.okta.com/docs/guides/identity-providers/
Thank you for reaching out to our Community and have a great day!
_____________________________________________________________________________
What you missed: new product releases and other announcements
_____________________________________________________________________________
Community members help others by clicking Like or Select as Best on responses. Try it today.
_____________________________________________________________________________
Hi @User16594883467582706479 (Customer Support Online Experience) : We know this can be done within Global policy & we have already done that. Our authentication policy is now forcing for MFA & we wanted to understand how we can get a exception for a specific IDP. Do you have a option how we can do it using expression language ?
Hi, @SuhasM.81827 (Customer)
I suggest you open a case with our Support to get an in depth look at the configuration you have there.
Thank you for reaching out to our Community and have a great day!
_________________________________________________________________________
What you missed: new product releases and other announcements
_________________________________________________________________________
Community members help others by clicking Like or Select as Best on responses. Try it today.
_________________________________________________________________________