
AlbertR.51404 (Customer) asked a question.
I have a rule/policy applied on a certain application inside okta. I have tried everything but the timeout is not working. I can for example setup MFA and people will get it required, but I cannot seem to make it work for the timeout. It's set at 2 min just to test, I want it at 5 min.

Hi @AlbertR.51404 (Customer) , Thank you for reaching out to the Okta Community!
I’ve tested this and it seems to be working as expected on my end even with the 2 minutes limit.
It’s important to clarify that the re-authentication prompt only tiggers if the end-user initiates the login from the Okta Dashboard and Okta sessions are separate from application sessions. Once the user logs in to the app via SSO, it’s up to the app side to determine the application session lifetime.
I would recommend checking with the end-user reporting the issue and seeing exactly how they ran the test. Also, check for any other policy or rule that might apply to their account and may supersede what you are trying to implement. For testing purposes at least, you should try to set this particular app level policy as “priority 1”.
If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you.
Hope my answer helps!
--------------------------------
What you missed: new product releases and other announcements