Not protected with session sequence flow
The not protected with session sequence describes the sequence of events which occur when a user attempts to access a non-protected web resource, in a known application, where an existing Access Gateway already session exists.
Sequence flow
data:image/s3,"s3://crabby-images/e1fb5/e1fb55ddbe87bf5d8728197cc65e01fb4b7fe1bd" alt=""
Events
Step | Description |
---|---|
1 | User signs into Okta. |
2 | Access Gateway checks for session, uses existing session. |
3 | Access Gateway checks if resource is protected. |
4 | Access Gateway forwards required to application. Since session exists headers are provided on forward. |
5 | Application returns response to Access Gateway. |
6 | Access Gateway redirects response to User. |