<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00009quQOhCAMOkta Classic EngineAuthenticationAnswered2026-06-04T20:41:50.000Z2023-11-17T09:43:15.000Z2026-06-04T20:41:50.000Z

AlbertR.51404 (Customer) asked a question.

Okta time out not working

I have a rule/policy applied on a certain application inside okta. I have tried everything but the timeout is not working. I can for example setup MFA and people will get it required, but I cannot seem to make it work for the timeout. It's set at 2 min just to test, I want it at 5 min.

 

 

/help/servlet/rtaImage?refid=0EM4z000007IINF

 

 


  • Hi @AlbertR.51404 (Customer)​ , Thank you for reaching out to the Okta Community! 

     

    I’ve tested this and it seems to be working as expected on my end even with the 2 minutes limit. 

    It’s important to clarify that the re-authentication prompt only tiggers if the end-user initiates the login from the Okta Dashboard and Okta sessions are separate from application sessions. Once the user logs in to the app via SSO, it’s up to the app side to determine the application session lifetime.  

    I would recommend checking with the end-user reporting the issue and seeing exactly how they ran the test. Also, check for any other policy or rule that might apply to their account and may supersede what you are trying to implement. For testing purposes at least, you should try to set this particular app level policy as “priority 1”.  

     

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    What you missed: new product releases and other announcements

    Expand Post
    Selected as Best
  • AlbertR.51404 (Customer)

    I applied that to the admins (so to myself) and it's working. To the users on the selected apps, they are accessing through a website (which is linked to the app, so the timeout applies or should apply to it) but they are telling me it's not working. However, if I apply MFA it's working, so it's something with the timeout option.

  • Hi @AlbertR.51404 (Customer)​ , Thank you for reaching out to the Okta Community! 

     

    I’ve tested this and it seems to be working as expected on my end even with the 2 minutes limit. 

    It’s important to clarify that the re-authentication prompt only tiggers if the end-user initiates the login from the Okta Dashboard and Okta sessions are separate from application sessions. Once the user logs in to the app via SSO, it’s up to the app side to determine the application session lifetime.  

    I would recommend checking with the end-user reporting the issue and seeing exactly how they ran the test. Also, check for any other policy or rule that might apply to their account and may supersede what you are trying to implement. For testing purposes at least, you should try to set this particular app level policy as “priority 1”.  

     

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    What you missed: new product releases and other announcements

    Expand Post
    Selected as Best
  • AlbertR.51404 (Customer)

    Hi @Mihai Negoita - Okta (Okta, Inc.)​ ,

     

    Thanks for the reply and help. So the timeout is aso working for me, because i'm an admin and i'm accesing okta through Okta Dashboard as you mention. The issue comes once users that have no access to Okta Dashboard (they access to a website that is linked to an application we have in okta) are not getting that timeout (but they are getting the MFA that I applied on that same app, so only thing not working is the timeout).

     

    Is there any thing that could be not triggering the timeout for the users? Policy/rule is set on priority 1 and there are no more policies, so it's the only one (plus the default one).

     

    Thanks,

    Expand Post
This question is closed.
Loading
Okta time out not working