<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D51Y00005lFcRVSA0Okta Classic EngineAdministrationAnswered2020-10-13T21:20:48.000Z2018-12-04T15:40:57.000Z2018-12-15T00:48:43.000Z

AdrianD.17331 (Customer) asked a question.

Can we set up AD group membership as an Okta App? Essentially using Okta lifecycle management to control access to file shares or other group-managed resources.

We'd like to use Okta to manage access to all of our IT "resources" (distribution lists, file shares, group memberships, etc.). Is there a way to create a custom app that simply manages membership in an AD group?


aso37 likes this.
  • GabrielL.85945 (Customer)

    There is no separate app that accomplishes this. However, you can likely accomplish much of this through Okta's push groups functionality for AD. See the doc linked below:

    https://help.okta.com/en/prod/Content/Topics/Directory/Directory_Using_Group_Push.htm

     

    This functionality would only manage group membership. So essentially you add a user to a group in Okta, and this is then pushed downstream to add the corresponding user to the corresponding group in AD. The remaining configuration and setting of permissions of the group would still need to be performed downstream in AD.

     

    When you add the group in Okta to be pushed to AD, it will also give you the option to choose whether it's a security group or distribution group, and you'll be able to define the scope.

    Expand Post
This question is closed.
Loading
Can we set up AD group membership as an Okta App? Essentially using Okta lifecycle management to control access to file shares or other group-managed resources.