<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D51Y00007EaRXXSA3Okta Classic EngineSingle Sign-OnAnswered2025-03-23T09:01:15.000Z2019-12-05T16:28:03.000Z2020-01-08T16:09:31.000Z

4qmvo (4qmvo) asked a question.

Separate Forests IWA SSO

Hello,

 

Whats the proper procedure when you want to add multiple forests with IWA agents in each forest, but the user may need to access both. For example, user is a part of OLDDOMAIN.COM (which currently has IWA agents) and they at times will need to access NEWDOMAIN.COM (hope to have IWA agents).

 

I understand that this may be possible with the DSSO Custom URL that could potentially be used to redirect to the proper SSO. Is it my understanding that the users will enter in that new custom URL to then sign in to the NEWDOMAIN.COM?

 

Also tried adding the newdomain to existing okta client and it ended up taking the OLDDOMAIN IWA agents offline. In order to bring them back up had to take the new IWA agent offline and they came back up.

 

I apologize if this has been answered and I've tried to look at other posts but didn't see the answer I was looking for. Did see one post but it references a post that no longer appears active.

https://support.okta.com/help/s/question/0D50Z00008G7VCdSAN/integrating-multiple-completely-separate-forests-into-1-tenant

Thanks!

 


This question is closed.
Loading
Separate Forests IWA SSO