Late in 2024 Okta released a new feature for Okta Privileged Access - the ability to manage SaaS shared accounts using the same approach to managing access to other privileged resources like servers. This article provides an introduction to this new feature. IntroductionIntroducing SaaS Service Accounts in Okta Privileged AccessThe User ExperienceCheck Out CredentialsCheck In … Continue reading An Introduction to Managing SaaS Shared (Service) Accounts in OPA
Category: PAM
Privileged Access Management domain topics
Automating Individual Secret Folders in OPA with Workflows
Okta Privileged Access has a secrets function, where a folder hierarchy can be built and policies applied to allow groups of users to access shared secrets. Whilst it's not it's primary use case, it could also be used to provide an individual secrets folder mechanism where users in Okta could have their own personal secrets … Continue reading Automating Individual Secret Folders in OPA with Workflows
Reduce Risk through Governance for Okta Administrators
In this article we explore the different patterns for associating users with administrative roles and how we can reduce the risk around these using governance. There are multiple articles listing the controls that should be applied to the administrative access in Okta, but this article will focus on the governance controls. Introduction Okta administration is … Continue reading Reduce Risk through Governance for Okta Administrators
Using Ansible to Manage the Server Agent in Okta Privileged Access
This article looks at how Ansible could be used to manage the server agent ('sftd') on a fleet of Linux servers. The article assumes there's an Ansible deployment configured and the controller can connect to and run playbooks on managed servers. IntroductionAnsible Set upSecurityOther Set upAnsible Automation ExamplesCheck Status and Start sftd ProcessCheck sftd VersionsUpdate … Continue reading Using Ansible to Manage the Server Agent in Okta Privileged Access
Managing and Using Okta Shared Accounts with Okta Privileged Access
Okta recently announced a new SaaS app service account capability for Okta Privileged Access. This includes being able to manage the passwords for Okta users (accounts) that may need to be shared for administrative functions. This article will explore this new capability. IntroductionAn Overview of Managing Okta Shared Accounts in Okta Privileged AccessAn ExampleConsiderations for … Continue reading Managing and Using Okta Shared Accounts with Okta Privileged Access
Governance for Okta Privileged Access Server Resources
This document describes the approach and mechanism to run a certification campaign to review Okta Privileged Access Resource (Server) access. Introduction Overview The Aim of the Solution How the Solution is Built Building Okta Privileged Access Sync Connector OPA Data Sync Steps Step 1: Okta Application Setup Step 2: Setup Workflow Step 2.1 Create Connections … Continue reading Governance for Okta Privileged Access Server Resources
The Combined Power of Okta Privileged Access and Okta Identity Governance
This article looks at the benefits of combining Okta Privileged Access with Okta Identity Governance to reduce the risk of using privileged accounts and access. IntroductionUsing Okta Identity Governance to Enhance Okta Privileged AccessJust-in-time Access ApprovalAccess Requests for OPA AccessAccess Certification for OPA AccessEnhancing the Information Available to ReviewersLeveraging Okta WorkflowsSaaS Service Accounts and OIN … Continue reading The Combined Power of Okta Privileged Access and Okta Identity Governance
Okta Privileged Access Requests with JIRA and Okta Workflows
This article looks at how to use Jira to raise and manage time-bound privileged access requests in Okta Privileged Access. It leverages an Okta Workflows solution that integrates with Jira and then manages Okta group membership. IntroductionOverview of the SolutionSome Design ConsiderationsUser Experience and Background FlowsUser Requests Privileged AccessUser is Reminded about Pending Expiry of … Continue reading Okta Privileged Access Requests with JIRA and Okta Workflows
Troubleshooting Okta Privileged Access
This post looks at the tools to use when troubleshooting issues with Okta Privileged Access (OPA). It’s not a “if you see this error, go do this” article – Google is great for that! It will look at where to go to look for diagnostic info to help troubleshoot issues. Revisiting the Okta Privileged Access … Continue reading Troubleshooting Okta Privileged Access
Using the Secrets API with Okta Privileged Access
Okta Privileged Access has the ability to store and retrieve generic secrets in it's vault. This can be done via the user interface, the sft client in the command line or via the Secrets API. This article will explore the Secrets API for managing secrets in the vault. Overview Secrets management involves both folders (and … Continue reading Using the Secrets API with Okta Privileged Access

IAMSE