Configure the Map Primary Email to Login Attribute Setting in Okta
Last Updated:
Overview
Configure the Map primary email to login attribute setting in Okta to enforce the email address as the username or allow multiple users to share the same email address. Self-Service Registration (SSR) requires this setting, which controls whether users must have unique email addresses.
Applies To
- Okta Identity Engine (OIE)
- Okta Classic Engine
- Lifecycle Management (LCM)
- Map to Login
- Self-Service Registration (SSR)
Solution
How is the Map primary email to login attribute configured?
Configure the Map primary email to login attribute by navigating to the General Security settings in the Admin Console and adjusting the Organization preferences.
- In the Admin Console, navigate to Security and select General.
- Scroll to the Organization section.
- Set the Map primary email to login attribute to the desired configuration:
- Enabled: Okta automatically sets the
loginattribute of the user to equal theemailaddress. Self-Service Registration (SSR) requires this setting. When enabled, all users must have a unique email address. - Not Enabled: The
loginandemailattributes of the user remain independent. This allows multiple users to share the same email address, provided the usernames are unique.
- Enabled: Okta automatically sets the
- Click Save.
NOTE: Enabling this feature does not automatically update the usernames of existing users unless an administrator updates the primary email address.
