<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008ZjarCSAROkta Classic EngineUniversal DirectoryAnswered2024-04-13T00:09:40.000Z2018-11-20T19:41:32.000Z2018-11-21T22:20:32.000Z

k9um2 (k9um2) asked a question.

How to set ad attribute when an OKTA is deactivated

We have request to hide the user from global address list at AD (set msExchHideFromAddressLists to true) when we deactivate an OKTA user.

 

Ideally in the attribute map from OKTA to AD, we can set msExchHideFromAddressLists accordingly based on the user status (DEPROVISIONED or not). However, the user's status attribute is not accessiable in expression language.


  • Currently the msExchHideFromAddressLists is intended to be used to simply trigger the downstream application (Active Directory or O365) to have the user removed from the global address list. This can only be mapped with a boolean value (true or false) from the source (AD to O365 ideally).

     

    Since this request is not part of the Okta functionality at this point, you may be able to describe this functionality and submit this idea in our product page. Features suggested in our community are reviewed and can be voted and commented on by other members of the community, therefore making it much easier for the engineering team to understand the priorities that you have for feature requests. From there, the PM team will review the top 30 most voted upon ideas each month and provide feedback/roadmap status on these via the page.

     

    https://support.okta.com/help/s/postidea

     

    Thank you for choosing Okta!

    Expand Post
This question is closed.
Loading
How to set ad attribute when an OKTA is deactivated