<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008C3jaySABOkta Classic EngineAdministrationAnswered2024-04-30T09:18:25.000Z2018-02-20T16:50:58.000Z2018-08-12T04:14:14.000Z

JM (Customer) asked a question.

AD Agent admin role
What is the best administrator role for the AD Agent account? I've seen documentation that claims you should use "Application" but I was told by a support rep to use "Super" when we originally configured it. I would rather NOT use Super on any account unless I absolutley have to. I assume it would need "Organization" or "Group" to create users and groups from AD. What is the offical answer? Thanks.

  • Hi Jeff,

     

    The minimum Admin rights required for the installation of the AD Agent it is indeed the Application Admin. But, you can choose to give him some higher Admin rights depending on the permissions you want to have when taking actions from your AD instance. The Super Admin role is quite used as it gives you full permissions, but sometimes not entirely necessary. You can read more here (https://support.okta.com/help/Documentation/Knowledge_Article/Administrators-793645444) regarding the permissions given according to the Admin role.
    Expand Post
    Selected as Best
  • Hi Jeff,

     

    The minimum Admin rights required for the installation of the AD Agent it is indeed the Application Admin. But, you can choose to give him some higher Admin rights depending on the permissions you want to have when taking actions from your AD instance. The Super Admin role is quite used as it gives you full permissions, but sometimes not entirely necessary. You can read more here (https://support.okta.com/help/Documentation/Knowledge_Article/Administrators-793645444) regarding the permissions given according to the Admin role.
    Expand Post
    Selected as Best
  • j5v7c (j5v7c)

    Hello,

     

    Thanks for posting your inquiry in Okta Community Portal.

     

    ​If you receive a great answer to your question(s), please help readers find it by marking it the best answer. Hover over the answer and click "Best Answer." 

     

    Thank you,

     

    ​Dylann Fezeu

    OHC Team
    Expand Post
This question is closed.
Loading
AD Agent admin role