<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D51Y0000ALpt4kSQBOkta Classic EngineAdministrationAnswered2024-05-01T09:01:38.000Z2021-01-26T21:36:07.000Z2021-07-15T21:39:58.000Z

AndrewP.21654 (Synovus) asked a question.

Application sign-on policy rules with API

I am looking to update several applications with a sign-on rule related to device trust however, I don't want to manually create this rule across our environments. Using the API, is it possible to manage application sign-on policies/rules? I have so far come across the Okta Sign-on policy API but that is a different level.

 

Thanks.


  • AndrewP.21654 (Synovus)

    Thank you. I did find that page however, the Policy API doesn't appear to manage the application sign-on policies. I was hoping that someone else has come across this before. I will keep looking.

     

    okta policy types

    Expand Post
  • AllenS.41309 (Customer)

    Can we get an answer to this? We're looking to automate this process as part of our pipeline as well and are not seeing an option for this in the API.

  • JonathanL.09076 (Inspire Brands)

    Piping in to second this request. This is a feature that I've been looking for for a long time.

     

    As far as I understand, there are currently no public Application Sign-On Policy APIs available to customers. However, it would be a really welcome enhancement, and in my experience is a notable gap in the options one has for configuring Okta through the API. As the number of applications in an environment grows from dozens to hundreds or thousands, it becomes increasingly difficult to audit and ensure consistency across Application Sign-On Policies. Auditing the Application Sign-On Policies without an API is a very time-intensive and error-prone task, and it causes delays in communicating to stakeholders what the current state at any given time is. Having an Application Sign-On Policy API would reduce that effort required during audits dramatically - not to mention that it would also enable DevOps pipelines to have much better control of Okta, for instance, in use cases where Terraform is being used to manage the Okta environments.

    Expand Post
  • o4zt7 (o4zt7)

    Thirding to this request, as we are using an Application Onboarding Automation tool but unable to configure App Sign on policies via API.

  • 35yxk (35yxk)

    Agreed - I am being asked to report on our applications to show sign on policies and it would be nice to be able to include this in my script that pulls down information about the apps, so I could show which ones have custom sign in policies and which don't.

  • PeterM.87273 (Customer)

    Adding my voice to this - first looked at automating App Sign On policies ~18 months ago, somewhat frustrating that we still don't have API support. Will raise a support call, may prompt some answers about a possible ETA.

  • AndyL.58307 (Customer)

    Hi Bogdan,

     

    Were you able to confirm that the suggestion provided works? I tried making a GET call, but the type field errors:

     

    Not found: Resource not found: Okta:SignOn (RuleSetEntity)

10 of 12
This question is closed.
Loading
Application sign-on policy rules with API