Some organizations need an Okta admin with limited access to monitor imports, specifically for AD/LDAP import management. Currently, no out-of-box Okta admin role provides this restricted access.
- Okta Administration
- Custom admin role and resource
- Okta Identity Engine (OIE)
In this case, a custom admin role with a custom resource set is needed to achieve this goal.
- Create a new admin role, Import Admin, with only Run Imports selected under Profile source.
- Then, create a custom resource set with only "All Active Directory applications" selected.
- Assign this role and resource set to anyone or any groups who need this access.
- The users/groups should now have the proper role permission to perform the import monitoring.
