
BillT.72696 (Customer) asked a question.
I’m working on an app which integrates Okta authentication on AWS Cognito and I have a question about the communication of the two. In the case that an user is unassigned or deactivated in Okta, how does Okta inform AWS Cognito about that action (unassignment/deactivation of user)?

Hi,
For Okta to communicate the changes to the user's status, you need to have Provisioning enabled between the two.
For this, you can use the AWS Cognito Provisioning Connector by Aquera. Search for this in the Okta integration network and submit a request for this application.
Once this is configured and the option to "deactivate users" is enabled, when a user is deactivated in Okta, an API call will be made, via the connected, to AWS and it will deactivate the user there as well.
If you encounter any issues with this configuration, do not hesitate to raise a support ticket or call our Support line at (800) 219-0964.
Thank You,
Liviu Scarlat
Technical Support Engineer
Okta Global Customer Care