Description:
Currently, okta-aws-cli does not support Okta FastPass for authentication.
When an organization enforces FastPass as the primary or mandatory authentication method, the tool uses push or token mechanism with okta to proceed with the login flow.
FastPass uses device trust and biometric (or platform) authentication, which replaces the password or traditional MFA challenge (TOTP, push, etc.).
Suggested solution:
Implement support for Okta Identity Engine flows that include FastPass device-based MFA, possibly by:
- Updating to the latest Okta SDK
- Supporting browser-based OIDC flow when FastPass is detected