Okta Error Unable to Authorize Integration Occurs When Adding 'Cisco Identity Intelligence - Read-Write Management API Service' Okta OIN Catalog Application
Last Updated:
Overview
An error occurs when adding the Cisco Identity Intelligence - Read-Write Management API Service application from the Okta Integration Network (OIN) catalog. This issue happens because the organization lacks the Okta Privileged Access (OPA) entitlement. Contacting the Okta Accounts team to enable the OPA entitlement resolves this issue. When attempting to add the application, Okta generates the following error message:
Unable to authorize integration
The following scopes are required: okta.serviceAccounts.read
Applies To
- Okta Identity Engine (OIE)
- Okta Classic Engine
- OIN Catalog App
Cause
"Okta Privileged Access" (OPA) SKU is required to add the Cisco Identity Intelligence - Read-Write Management API Service catalog app, and also needs to set up the Okta Privileged Access app before managing app accounts through this API.
The associated scope okta.serviceAccounts.read is only available in orgs with Okta Privileged Access (OPA).
Solution
The Okta organization lacks the necessary OPA entitlements. Contact the Okta Accounts team representative or Customer Success Manager to learn more about enabling OPA entitlements for the organization. Discuss pricing with the representative, as enabling this feature may incur additional costs.
