Use this configuration for each app that should require Jamf Connect's Zero Trust Network Access to be active before a user can log in.
- Click Applications in the Okta navigation bar.
- Click the desired application to reveal its details, then click the Sign On tab.
- Scroll down to Sign On Policy and select Add Rule.
- Provide a Name for the rule, such as
Require Zero Trust Network Access. - Under , select In Zone.
- When the Network Zones field appears, type the name of the network zone that you created earlier (such as "Jamf Trusted IPs").
- In the section, ensure that Allowed is defined and Prompt for factor is unchecked.
- Click Save.
- Arrange the new rule towards top priority, as appropriate.
- Click Add Rule to create another sign-on rule that will block all other traffic.
- Provide a Name for the rule (such as "Block all others").
- Click , then select .
- Leave all other settings as their default values.
- Click Save.
- Ensure that the block rule is below the
Zero Trust Network Access onlyrule in priority in the Sign On Policy table. - Repeat these steps for other applications, as required.