Deploy Passwordless Authentication
Deploy passwordless authentication using Okta FastPass and FIDO2 (WebAuthn) to eliminate passwords and strengthen organizational security policies. Review this guide to know the strategic considerations for passwordless user sign-in flows, including discovery questions and configuration steps for four use cases.
Traditional authentication, relying on usernames and passwords, creates significant security risks—as 80% of hacking-related breaches involve weak or stolen credentials—and leads to a poor user experience and high support costs. This deployment guide outlines how administrators can deploy passwordless authentication solutions, such as Okta FastPass and FIDO2 (WebAuthn), to eliminate memorized secrets and implement medium- to high-assurance-level access.
This guide is designed for Okta Administrators and Identity Engineers responsible for implementing security policies and configuring authenticators to achieve a secure, frictionless sign-on experience.
Upon reviewing this guide, you will be able to:
- Configure Okta FastPass by enabling Okta Verify as a required authenticator at the organization level.
- Implement various passwordless use cases, including those requiring medium or high assurance levels (e.g., FastPass with biometrics).
- Add and configure the FIDO2 (WebAuthn) authenticator for passwordless access using security keys or built-in biometric authenticators (such as Windows Hello or Apple Touch ID).