Okta Secure Partner Access Solution

Description: In this document we will go over the high-level overview of the Secure Partner Access (SPA)  solution in Okta. Also, we will go over the setup of Realms and Partner Admin Portal. Prerequisite: Workforce Identity Cloud customers with Minimum Okta Identity engine (OIE) For B2B customers managing partners with Realms, a SPA license is … Continue reading Okta Secure Partner Access Solution

Oracle Fusion Cloud Applications SSO Integration with Okta Workforce Identity Cloud

This Article will take you through the configuration to setup Oracle Fusion Cloud Applications SSO with Okta Identity Workforce Identity cloud. Prerequisites: At least IT Security Manager Role assigned to your user in Oracle Cloud admin console. Admin access to Okta Workforce Identity Cloud Console Create a SAML APP in Okta Admin Console: At the … Continue reading Oracle Fusion Cloud Applications SSO Integration with Okta Workforce Identity Cloud

Factor Sequencing on OIE: Authentication Method Chains

When OIE was released it championed assurance levels rather than specific authenticators. This provided a better experience for the majority of users and administrators. This ease of use came at the cost of easily being able to specify specific factors or factor orders which some customers required typically for compliance or regulatory reasons. Many of … Continue reading Factor Sequencing on OIE: Authentication Method Chains

 Active Directory Bidirectional Group Management

Description: This document describes how to set up Access Requests and Certification for AD-sourced groups imported into Okta. Pre-requisites: IGA license to manage AD groups in Okta. Active Directory integrated with Okta and proper service account permissions to manage groups in AD. Refer to “Group Push” permissions in this document: https://help.okta.com/en-us/content/topics/directory/ad-agent-about-service-account.htm All the user's managerID … Continue reading  Active Directory Bidirectional Group Management

Okta Device Access macOS TOTP account link

IntroductionPrerequisitesCreate / Adjust MDM ProfilesWorkspace ONE UEM ProfileJamf PRO ProfileKandji ProfileMicrosoft Intune ProfileDemo Introduction In Desktop MFA for macOS, admins can now choose between Okta Verify push notification and Okta Verify Time-based One-Time Password as the user verification method used to link an Okta account to the local macOS account.In this blog I will show you … Continue reading Okta Device Access macOS TOTP account link

All You Need To Know About Okta and Google Workspace Integration

This post will illustrate how to integrate Okta and Google workspace, options of integration and how to migrate users or stage the migration, the authentication flows and inbound federation.The post includes videos to illustrate how the integration works. The implementation was done on a small scale and in testing environments. Any production application should be … Continue reading All You Need To Know About Okta and Google Workspace Integration

Better together: Okta Device Access and Okta FastPass

IntroductionmacOS Okta Device Access and FastPass experienceEnable Okta FastPassEnroll Okta FastPass on macOSConfigure authentication policiesOkta DashboardApplication PolicyAdditional configurations on macOS DevicesConfigure SSO extension for managed macOS devicesConfigure auto-launch Okta Verify on macOS devicesWindows Okta Device Access and FastPass experienceEnroll Okta FastPass on WindowsSkip the Open Okta Verify prompt Introduction Combining security and user experience sometimes seems to be a … Continue reading Better together: Okta Device Access and Okta FastPass

Shared device authentication for consumers – device flow and Okta

The article discusses challenges and solutions for shared device authentication, focusing on consumer scenarios. It explores issues like credential exposure, session takeover, and phishing, proposing decoupled authentication and the OAuth 2.0 Device Authorization Grant as effective solutions. The Okta Customer Identity Cloud (Auth0) and Okta Workforce Identity Cloud (WIC) support this approach for secure shared device authentication.