In Advanced Server Access (ASA), there are reserved group names. If trying to do a group push from the Okta tenant, the following error may be generated:
Unable to update Group Push mapping target App group Power Users: Error while creating user group Power Users: Bad Request. Errors reported by remote server: Group name 'Power Users' is not allowed
- Advanced Server Access (ASA)
- Okta Privileged Access (OPA)
Engineering has defined groups that are reserved in ASA, and these groups cannot be used. The reserved groups are as follows (case does not matter):
"sft-admin"
"root"
"sudo"
"wheel"
"account operators"
"administrators"
"backup operators"
"guests"
"power users"
"pre-windows 2000 compatible access"
"print operators"
"replicator"
"server operators"
"users"
"cert publishers"
"dhcp administrators"
"dhcp users"
"dnsadmins"
"dnsupdateproxy"
"domain admins"
"domain computers"
"domain controllers"
"domain guests"
"domain users"
"enterprise admins"
"group policy creator owners"
"ras and ias servers"
"schema admins"
"wins users"
A name other than the one listed above will have to be used.
