Setting Up and Authenticating with Multi-factor Authentication (MFA)
Besides your username and password, Okta MFA prompts you for a second factor before logging you in. The product supports a variety of factor options.
The best part? Okta MFA enables your IT admin to customize security settings based on risk profile; this could mean that your company may only require a second factor in circumstances where extra protection is necessary, rather than at every login. For example, if you’re logging in from a new location or device, you may be prompted to provide another factor.
Your administrator will decide which factors you can set up. Find yours below to learn how to install and log in using the MFA option(s) you prefer.
Okta Verify
Okta Verify is a mobile app that verifies your identity in one of two ways. Okta can send you a push notification that you approve using Okta Verify. Alternatively, Okta Verify can generate a six-digit code that you enter into your Okta login screen to access your required app.
Install Okta Verify
- Download the Okta Verify app from the Apple App Store or Google Play onto your primary mobile device.
- Using your computer’s browser, navigate to your organization’s Okta page, e.g. [company.okta.com].
- Fill in your company-issued credentials and click Sign In.
- When prompted to enroll in Okta Verify, open the Okta Verify app on your phone and scan the barcode that appears in your computer’s browser.
- The next time you log into Okta, it should offer to send you a push notification or ask you for a numeric code. If you choose the push notification, then approve it when it arrives on your phone. If you choose to use the code, then access the code in Okta Verify and enter it into your browser.
Note: You can only register Okta Verify on one device at a time. Authenticating on a second device cancels authorization for the first one.
Prefer a video walkthrough?
- View Video Overview: Set up Okta Verify with Push for MFA
- View Video Overview: Set up Okta Verify, OTP for MFA
SMS authentication
SMS Authentication uses the text messaging service on your cell phone to send you a one-time login code. You cannot enter this code by approving a push notification as you can in Okta Verify. Instead, you must type it in by hand.
Set up SMS authentication
- Using your browser, navigate to your organization’s Okta page, e.g. [company.okta.com].
- Fill in your company-issued credentials and click Sign In.
- You will see a prompt on your device that “Extra verification is required for your account”
- Click Setup or Configure Factor.
- On the Setup: SMS screen, type your phone number.
- Click Send code. Type the SMS code received by your mobile device into the Receive a Code via SMS to Authenticate screen on your computer and click Verify.
Prefer a video walkthrough?
Voice call
This factor calls you via your smartphone or landline and reads an access code aloud. You then type the code into the browser to access your app. This is great for people who don’t have access to a cell phone because it doesn’t require push notifications or text messages.
Set up voice call authentication
- Using your browser, navigate to your organization’s Okta page, e.g. [company.okta.com].
- Fill in your company-issued credentials and click Sign In.
- You will see a prompt on your device that “Extra verification is required for your account”
- Click Setup or Configure Factor.
- On the Setup: Voice Call Authentication screen, enter your telephone number.
- Click the Call button.
- A “Call is in progress…” message appears, followed by a phone call. Enter the provided code into the Enter Code box.
- Click the Verify button, then Done, if needed.
Google Authenticator
This is a third-party app that generates a six-digit code for you to type into your Okta login screen. You have 30 seconds to input the code before it generates another. If you miss the window, use the next code to log in. After five unsuccessful attempts, Okta will lock your account for protection and you must contact an administrator for help.
Set up Google Authenticator
- Using your browser, navigate to your organization’s Okta page, e.g. [company.okta.com].
- Fill in your company-issued credentials and click Sign In.
- You will see a prompt on your device that “Extra verification is required for your account”
- Click Setup or Configure Factor.
- On the Set Up Google Authenticator screen, click the device type icon. Click Next. A barcode will appear on your screen.
Install the Google Authenticator app on your device
- On your mobile device, open the Apple App Store or Google Play and install Google Authenticator.
- Open the Google Authenticator app.
- Tap Scan a Barcode. (You might need to install a barcode scanner app; follow the prompts and then re-tap Scan a Barcode.)
- Hold your device up to the computer screen and scan the barcode.
- Click Next.
- Type the Google Authenticator code that appears on your mobile device into the Setup Google Authenticator screen on your computer and click Verify.
Comments
0 comments
Please sign in to leave a comment.