Not receive a new refresh token

Hi all,

In some identity providers. When I refresh the token, I will receive a new access token and refresh token.
But in okta, I always receive the same refresh token for every do refresh token.
How Can I set up in okta?

It’s the way it’s implemented currently. But it’ll be changed soon, so you’ll see a different behavior.

Hi @Long,

Did you take a look at Refresh Token Rotation ? It is an Early Access feature that can be turned on by going to Settings->Features and turning on ‘Refresh token rotation’ in the admin dashboard.

Thanks!

Hi @gpadma,

I already read this document.
But I can’t see Features in the developer console.
Can you take a screenshot for me?

Thanks.

This topic was automatically closed 24 hours after the last reply. New replies are no longer allowed.