oktadev / okta-aws-cli-assume-role

Okta AWS CLI Assume Role Tool
Apache License 2.0
338 stars 177 forks source link

Has this stopped working for anyone that upgraded to Okta Identity Engine #412

Open alexanderdiaz86 opened 1 year ago

alexanderdiaz86 commented 1 year ago

Looking to see if this assume role cli has broken for any one that upgrade their Okta to OIE?

EndymionWight commented 1 month ago

Late response, but in case someone still needs an answer: no, it hasn't, this tool still works with OIE. We are now, however, running into issues for some users where Okta forces an MFA prompt (even if the sign-in policy for the AWS app explicitly disables MFA) if it deems the login attempt "suspicious", which crashes the tool. If you have full control of your Okta, you will probably be able to bypass this by tweaking its trust settings, but if not, it might sadly be time to migrate to the new tool.