Skip to main content

April 13, 2026

Configure Identity Provider Routing Rules in Okta

Configure Okta Identity Provider routing rules for iOS and Android devices for the Workspace ONE-Okta integration. These routing rules work with application sign on policies to redirect authentication requests from iOS and Android devices to Workspace ONE.

Procedure

  1. In the Okta Admin console, navigate to Security > Identity Providers.

  2. Click the Routing Rules tab, then click Add Routing Rule.

  3. Configure the routing rule.

    OptionDescription
    Rule NameEnter a name for the rule you are creating.
    IF User's IP isIf appropriate for your implementation, you can specify network zones to which the routing rule applies or does not apply. Network zones must be defined already in Okta.
    AND User's device platform isSelect Any of these devices, then select iOS or Android, or both, based on your requirements.
    AND User is accessingSelect Any of the following applications, then enter the applications that you plan to configure with Device Trust app Sign On policy rules in the Okta Admin console.
    For more information, see Configure App Sign On policy rules in Okta.
    AND User matchesSelect the appropriate option.
    • Anything
      Specifies any user. This is the default option.
    • Regex on login
      Allows you to enter any valid regular expression based on the user login to use for matching. This is useful when specifying the domain, or if a user attribute is not sufficient for matching. For details, see Identity Provider Discovery.
    • Domain list on login
      Specify a list of the domains to match. For example, example.com. Do not add the @symbol to the domain name. You can add multiple domains. Note that it is not necessary to escape any characters.
    • User attribute
      Select an attribute name in the left list, a type of comparison in the Starts with list, and then enter a value that you want to match in the text field on the right.
    THEN Use this identity providerSelect the Identity Provider you created in Okta for Omnissa Access, as described in "Configure Omnissa Access as an Identity Provider in Okta".

    For example:

    identity provider routing rule for iOS and Android devices

  4. Click Create Rule.

What to do next

Enable Device Trust Settings in Okta

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…