Add a rule to a user identification policy

A user identification policy controls how users prove their identity when they access apps in your org. Learn how user identification policies work and how they integrate with the app sign-in policies in your org.

About this task

Early Access release. See Enable self-service features.

Add a rule to a user identification policy to define the conditions under which identity verification is required and to specify the methods that end users must use to verify their identity.

Before you begin

  • Ensure that you have an app sign-in policy in your org. User identification policies are created automatically when you create an app sign-in policy and can't be created separately. See Create an app sign-in policy.
  • Ensure that Okta Verify is configured as an authenticator in your org. In the Admin Console, go to Security > Authenticators and check that Okta Verify appears in the list.
  • Ensure that Okta FastPass is enabled in the Okta Verify authenticator. In the Admin Console, go to Security > Authenticators, click Actions next to Okta Verify, and select Edit to verify that Okta FastPass is enabled.
  1. In the Admin Console, go to Security > Authentication Policies.
  2. Click the App sign-in tile.
  3. Select the app sign-in policy for which you want to configure user identification rules.
  4. On the User identification tab, click Add rule.
  5. Enter a rule name.
  6. In the IF section, configure the conditions under which this rule applies and in the THEN section, configure the sign-in experience for users who match the rule conditions. See Add an app sign-in policy rule.
  7. Click Save.