<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

Okta Workday Import Fails With Data Outside Constrained Security Group Error

Okta Integration Network
All Engines
Okta Classic Engine
Okta Identity Engine

Overview

Okta generates an import error for Workday when the Constrained Security Group (CSG) is misconfigured in Workday. Verifying the Constrained Security Group configuration in Workday and retrying the import resolves this issue. The following error appears in the Okta dashboard during the import:

 

failure: The data you are trying to fetch is outside of your Constrained Security Group: Validation error occurred. The entered information does not meet the restrictions defined for this field. (Worker_Reference).

 

Applies To

  • Okta Identity Engine (OIE)
  • Okta Classic Engine
  • Okta Integration Network (OIN)
  • Workday Provisioning
  • User Imports
  • Constrained Security Group (CSG)

Cause

The error occurs because the Constrained Security Group (CSG) is misconfigured in the Workday platform.

Solution

How is the Workday Constrained Security Group import error resolved?

Verify the Constrained Security Group configuration in Workday and retry the import in the Okta Admin Console.

  1. Review the Workday Constrained Security Groups documentation for the required configuration steps.
  2. Verify the Constrained Security Group feature is properly configured in the Workday platform. Contact Workday support for direct assistance with configuration questions.
  3. Retry the Workday import in the Okta Admin Console after addressing the misconfiguration.

 

Related References

Loading
Okta Support - Okta Workday Import Fails With Data Outside Constrained Security Group Error