
8ov27 (8ov27) asked a question.
I'm trying to setup self service password resets for AD Mastered users. Delegated authentication is enabled but is not working using the users email address user.name@domain.com(configured as Okta UN.) Delegated authentication does work however with the on-premise user.name@domain.local. Even though the UPN in AD is the same as the email address.
Any feedback would be appreciated.

Hello Jason,
Delegated authentication should allow you to use the AD credentials to login to Okta, however there are some steps you need to take. Please follow the steps here :https://help.okta.com/en/prod/Content/Topics/Directory/ad-agent-prerequisites.htm to properly configure Configure delegation for the Okta Service account.