• Public

Universal Directory

Skip Feed
  1. Hi:

    I'm looking at leveraging Linked Objects for manager functionality. I followed the doc below, successfully.

    https://support.okta.com/help/s/article/how-to-create-linked-objects-and-pass-the-attribute-to-downstream-applications?language=en_US

    As documented, a separate section shows up on the Profile page with a manager picker. But the base "manager" attribute is still editable. Is there a way to combine these, so that I do not need to advise admins to use the linked object manager instead of the base?

    Thanks,


  2. Mihai N. likes this.

  3. User16370330549592969269 (Customer Support Online Experience)

    Through the Okta Ideas program, we collaborate with our customers and partners to turn feedback into innovative solutions. Your input drives new features across Access Management, Okta Identity Governance, and more.

     

    Hear from happy customers who’ve seen their ideas come to life, and learn how the Ideas lifecycle ensures your voice is heard.

     

    We want to hear from you! Participate in our survey by Feb 1, 2025, and help us improve. Share your thoughts and get a chance to win Okta swag! Learn more and share your ideas.


  4. Hello All,

    I have a question regarding integrating AD and M365 with windows in a HAADJ scenario.

    Currently in my test environment(replicating production), We have the below setup.

    AD domain uses domain contoso.com, Contoso.com not verified in M365, Users use contoso.com user to login to their devices.

    M365 apps use Fabrikam.com so users login using their username based on AD account to get access to M365 resources using the domain fabrikam.com i.e. no upn matching between M365 and AD.

    Currently we need the users logged in to the devices to retrieve AzureADPRT and EnterprisePRT so that they have access to cloud resources and that normally happens if there is UPN matching between onpremise and cloud.

    However I am trying to find a way through mappings, etc.... so that onprem user without upn matching can be given primary refresh token from Azure/Enterprise to have access to cloud resources such as HAADJ (Hybrid Entra) joined devices.

    Would appreciate any guidance here. Thank you

    Expand Post

  5. 1 of 2

End of Feed
5 Chatter Feed Items

Group Details

Details

Description
Information
Member Count
30 Members