
sf6lg (sf6lg) asked a question.
Our company wants to ensure that all employees only access internal apps from a company owned device. We use apps like Salesforce and G-Suite, and all devices consist of Windows and Mac laptops. If we enforce SSO for our apps through Okta, can we then enforce that our users can only access Okta from a company owned device?

Hello @sf6lg (sf6lg) Thank you for reacting out to our Community!
For this we recommend using device trust, with this setup you will be able to force your users to use only devices registered in Okta and with the Sign on Policies they will not be able to access any Okta setup application if the device is not trusted.
Please see our doc below:
https://help.okta.com/oie/en-us/content/topics/identity-engine-upgrade/dt-upgrade-considerations-desktop.htm
https://help.okta.com/oie/en-us/content/topics/identity-engine-upgrade/dt-upgrade-considerations-desktop.htm
Community members help others by clicking Like or Select as Best on responses. Try it today.
Earn Today: New Okta Community Badges Have Arrived
Ask the experts about Okta Privileged Access