<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D5KZ00000NfVCF0A3Okta Classic EngineAuthenticationAnswered2025-04-03T16:40:32.000Z2025-03-20T14:39:49.000Z2025-04-03T16:40:32.000Z

MarekA.35681 (Customer) asked a question.

Using a specific Identity Provider in Authentication Policies

We want to enforce users within a specific group to use an Identity Provider for accessing one app.

All other apps can be accessed via Password or IdP factor.

 

Any recommendations how to set this up?

Within the Global Session Policies I can define specific IdPs, but this would then be applied to all Apps.

In the app specific Authentication Policy I can only define "Password / IdP" as factor, but no specific IdP.

The IdP Routing Rules/IdP Discovery would redirect users to the IdP when accessing the app, but is not restricting other login mechanisms.

 

As I see it, this is only possible in the Global Session Policy, which is not meeting our requirements here.


This question is closed.
Loading
Using a specific Identity Provider in Authentication Policies