<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D5KZ00000rsJf10AEOkta Classic EngineAuthenticationAnswered2025-06-03T17:38:06.000Z2025-05-27T15:42:59.000Z2025-06-03T17:38:06.000Z

JustinD.98448 (Cathay Bank) asked a question.

FIDO2/Security Key for Self-Service Password Reset

I noticed the Authenticator options for SSPR seem rather limited, relative to the diverse offerings usually possible for configuration in Okta.

 

My organization primarily uses FIDO2/WebAuth YubiKeys as our 2nd factor. Is there a feature flag or way to enable this as a factor for password recovery *initiation* - rather than only as verification? If this is not possible or not being considered on the roadmap, I would very much like to know the rationale. Our company does not allow all users to have access to their personal phones, plus email is out of the question once integrated into Okta SSO.


This question is closed.
Loading
FIDO2/Security Key for Self-Service Password Reset