TC Technology Knowledge Base

MFA Bypass in Okta for Service Accounts

Updated on

Only Okta Admins are able to create Service Accounts 

End user links should be used when the service desk staff wants to access their own accounts as an end user:                                                                                                                      Production: sso.tc.columbia.edu Preview: ssotest.tc.columbia.edu

Administrator Links should be used when the  service desk staff needs to perform administrative function:                                                           Production: https://tccu-admin.okta.com/admin/dashboard

Preview: https://tccu-admin.oktapreview.com/admin/dashboard

2. Create a Service Account in Okta if it doesn't exist

3. Create a Duo Account for the Service Account user if it doesn't exist

4. Set-up Duo in Okta for the Service Account

5. Check the "bypass Duo box" for the Service Account in Duo

Users using a service account may get the Duo prompt, they just need to click through the screens; they will be directed to a MFA screen, but won't actually need to login to Duo

6. Sign into Okta apps with the password only, but the user will get prompted with the MFA screen after clicking the "Verify with Duo" then it checks if the user has the Bypass option checked.

Previous Article Reset Authenticators
Next Article How to resend the "Welcome to Okta" Activation Email