Global session policies

Global session policies supply the context necessary for the user to advance to the next authentication step once they have been identified by Okta. They also specify actions to take, such as allowing access, prompting for a challenge, and setting the time before prompting for another challenge.

Global session policies can require any of the factors that you set up on the SecurityGlobal Session Policy page. After they're configured, use the primary and secondary factor conditions in your policy rule to choose which is evaluated.

All orgs have a default global session policy that applies to all users. This policy allows access with a password, IdP, or any factor allowed by the authentication policies. You can change this condition or add higher priority rules to the default policy. You can also create new policies and prioritize them over the default.