Okta has recently released a delegate feature in Okta Idenity Governance. This feature allows all governance activity, such as reviewing access requests or access certifications, to another Okta user (optionally for a set period). This article introduces the new feature. IntroductionSetting a DelegationAs an AdministratorAs a UserAccess Requests as the DelegateAccess Certification as the DelegateDelegate … Continue reading New Delegate Feature in OIG
Category: IAM Domains
Non-product IAM domains
A Set of Utilities for Secrets Management in OPA
In a recent engagement a customer raised issues around management of secrets and folder,s and associated policies and users in their Okta Privileged Access (OPA) deployment. In the spirit of the mantra of Mr Bigweld in Robots "see a need, fill a need", I set about writing some utilities to help manage larger, more-complex Secrets … Continue reading A Set of Utilities for Secrets Management in OPA
ISPM Architecture
This article provides a brief introduction to the architecture of Okta Identity Security Posture Management (ISPM). The following figure provides an overview of the architecture. We will break it up into the Input, Service, Console with Users/Roles and Output. Input ISPM is fed from different sources. The main source is from other customer systems, such … Continue reading ISPM Architecture
New Okta Group Push API
If you have been working with applications in Okta for some time and occasionally use the APIs (or Workflows) you would be aware that one glaring omission in the API library was an API to manage the Push Groups on applications. This has now been addressed with the Group Push Mapping API. The Group Push … Continue reading New Okta Group Push API
The New Unified Requester Experience in OIG
This article introduces the new Access Requests - Unified Requester Experience that is currently rolling out as an Early Access feature in Okta Identity Governance (OIG). The Background As Okta was building its new Identity Governance and Administration (IGA) product, it acquired a company to provide what would become the Access Requests component of Okta … Continue reading The New Unified Requester Experience in OIG
New Secrets Search Function in Okta Privileged Access
Okta has introduced a new search function for Secrets in Okta Privileged Access (OPA). When an OPA user goes to the Secrets menu item, they will see a new search option. Typing in a search argument will show matching secrets with the secret name, Folder hierarchy (clickable breadcrumb), Resource Group / Project and Description. You … Continue reading New Secrets Search Function in Okta Privileged Access
Okta Device Access: FIDO2 Passwordless Windows Login
July 2025: This is an Early Access Release IntroductionRequirementsOkta RequirementsWindows Device RequirementsUser Prerequisites & EnrollmentDemo - FIDO2 Passwordless on WindowsConfiguration stepsActivating FIDO2 Support for the Desktop MFAActivating Passwordless policy for Desktop MFASet up the FIDO2 (WebAuthn) authenticatorConfigure User Verification MethodConfigure Authentication PolicyConclusion Introduction This technical blog post offers an exploration of Okta Device Access Desktop MFA with … Continue reading Okta Device Access: FIDO2 Passwordless Windows Login
Cross-Platform Endpoint Security: Integrating Okta and CrowdStrike for Windows and macOS
IntroductionRequirementsOkta ConfigurationCrowdStrike ConfigurationDevice Management / MDMmacOS Device RequirementsWindows Device RequirementsNetwork & ConnectivityOkta configuration stepsEndpoint Security IntegrationCreate an endpoint security integration authentication policyInstall the CrowdStrike sensor on macOSEndpoint security integration plugin for macOSInstall the CrowdStrike sensor on WindowsReview Okta System LogsConclusion Introduction In today’s dynamic and hybrid work environments, ensuring that only trusted and secure devices can … Continue reading Cross-Platform Endpoint Security: Integrating Okta and CrowdStrike for Windows and macOS
Privileged Access Management for Microsoft Active Directory with Okta
Microsoft Active Directory is pervasive across industry, and thus a common target for hackers, particularly with the abundance of privileged accounts. In this article we look at how the Okta Workforce platform can use different approaches to managing privileged access and reducing the risk of these accessed. It includes just-in-time provisioning of access and dynamic … Continue reading Privileged Access Management for Microsoft Active Directory with Okta
Okta Privileged Access – Example Mechanisms to Export/View Session Recordings
This article provides some example mechanisms that could be used to export and view the session recording files produced by Okta Privileged Access. There are two examples shown: A simple series of scripts that show the flow and commands to export and view logs, and An overview of a mechanism built by a former Okta … Continue reading Okta Privileged Access – Example Mechanisms to Export/View Session Recordings

IAMSE