<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D51Y00009sm2UkSAIOkta Classic EngineLifecycle ManagementAnswered2024-04-01T16:59:38.000Z2020-11-08T15:27:06.000Z2020-11-09T16:28:06.000Z
When user deactivated remove users from all the AD groups.

Hi, Application access is controlled via AD groups which are assigned via okta, when an account is deactivated in okta, deactivated user should be removed from all AD groups. Can see an Idea (106829) opened for more than a year, is there any workaround to achieve this use case.

Thanks.


  • Can't think of a workaround via Okta.

    However, you can have an external daily job setup to see which accounts are deactivated and then trigger the removal directly from AD groups.

     

This question is closed.
Loading
When user deactivated remove users from all the AD groups.