Okta Workday Import Fails With Data Outside Constrained Security Group Error
Last Updated:
Overview
Okta generates an import error for Workday when the Constrained Security Group (CSG) is misconfigured in Workday. Verifying the Constrained Security Group configuration in Workday and retrying the import resolves this issue. The following error appears in the Okta dashboard during the import:
failure: The data you are trying to fetch is outside of your Constrained Security Group: Validation error occurred. The entered information does not meet the restrictions defined for this field. (Worker_Reference).
Applies To
- Okta Identity Engine (OIE)
- Okta Classic Engine
- Okta Integration Network (OIN)
- Workday Provisioning
- User Imports
- Constrained Security Group (CSG)
Cause
The error occurs because the Constrained Security Group (CSG) is misconfigured in the Workday platform.
Solution
How is the Workday Constrained Security Group import error resolved?
Verify the Constrained Security Group configuration in Workday and retry the import in the Okta Admin Console.
- Review the Workday Constrained Security Groups documentation for the required configuration steps.
- Verify the Constrained Security Group feature is properly configured in the Workday platform. Contact Workday support for direct assistance with configuration questions.
- Retry the Workday import in the Okta Admin Console after addressing the misconfiguration.
