Add an Identity Verification vendor as Identity Provider

You can configure an Identity Verification vendor (IDV) as Identity Provider (IdP) in Okta. This enables you to request an identity verification to ensure that the right user is onboarding or resetting their account. The IDV checks a user's government-issued identity document and prompts them to take a selfie to satisfy a liveness check.

Identity Verification adds an extra layer of phishing-resistance in your org.

Before you begin

  • Persona is a supported IDV.
  • You can't use an Identity Verification IdP for routing rules.
  • Ensure your Okta org URLs are added to the IDV allowlist.
  • If the IDV rejects the request from Okta, check the vendor's event log for troubleshooting.

Start this task

  1. In the Admin Console, go to SecurityIdentity Providers.
  2. Click Add identity provider.
  3. Select the IDV, and click Next. The Configure Identity Verification page opens.

  4. On the page, enter the details of the vendor: Name, API key, and Inquiry template ID.

  5. Optional. Set up fuzzy matching in the IDV. See your vendor's documentation. Okta passes the First Name and Last Name attributes from Universal Directory to the vendor.

  6. Click Submit. The IDV vendor appears in the list on the Identity Providers page.

To update the IDV IdP, go to Identity Providers Actions Configure Identity Provider.

To deactivate the IDV IdP, go to Identity Providers Active Deactivate. You can delete the IdP after deactivating it.

Related topics

Identity Providers