<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
Update the Service Account Password for Okta Agentless Desktop Single Sign-On
Okta Classic Engine
Directories
Okta Identity Engine
Overview

This article provides the steps to update the service account password for Agentless Desktop Single Sign-on (ADSSO) in Okta. Administrators must update the password in Active Directory and then validate the new credentials in the Okta Admin Console to ensure continuous authentication.

Applies To
  • Okta Identity Engine (OIE)
  • Okta Classic Engine
  • Agentless Desktop Single Sign-on (Agentless DSSO)
  • Active Directory (AD)
  • Directories
Solution

How is the service account password updated for Agentless Desktop Single Sign-on?

 

Update the password for the Agentless DSSO service account by resetting the credentials in Active Directory and validating the new password in the Okta Admin Console.

 

 

  1. Open Active Directory Users and Computers on the Domain Controller.
  2. Find and right-click the service account.
  3. Choose Reset password and change the password.

"Reset password" option

  1. Sign in to the Okta Admin Console to validate the new credentials.
  2. Go to Security, and then select Delegated Authentication.
  3. Scroll to Agentless Desktop SSO and click Edit.
  4. Select the Active Directory instance on which the Service Principal Name (SPN) is configured in the AD Instances section.
  5. Click the pencil icon to edit the configuration.

Edit button

 

  1. Enter the new password into the service account password field.
  2. Click Save to validate the new credentials.

Save the new credentials

 

NOTE: Users may be unable to sign in to Okta via Agentless DSSO if they received a Kerberos ticket before the service account password reset occurs. Okta generates a GSS_ERROR error in the System Log. To remediate this issue, the user must sign out of the domain or the domain-joined Windows computer and re-authenticate.

Loading
Update the Service Account Password for Okta Agentless Desktop Single Sign-On