
ChrisB.81667 (Customer) asked a question.
Our users primarily authenticate at the Spoke level; however, we want to give our users the benefit of logging into the Hub so they can access more of our other applications. Assuming a user is provisioned in both the Hub and Spoke, is it possible to have a user authenticate at the Spoke level and also be granted access at the Hub without re-entering their credentials/MFA? It would not be ideal to have them authenticate twice.

Hello @ChrisB.81667 (Customer) Thank you for reacting out to our Community!
There are 2 option that you can do this:
Please see: https://help.okta.com/en-us/content/topics/security/idp-inbound-saml-workflow.htm
Community members help others by clicking Like or Select as Best on responses. Try it today.
Ask Away: OIG Product Experts Answer Your Questions Thru Thur., Dec 14
Earn Today: New Okta Community Badges Have Arrived