<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00006xJIFCCA4Okta Classic EngineIntegrationsAnswered2024-04-16T12:33:34.000Z2021-05-05T14:09:31.000Z2021-05-19T13:43:29.000Z

p7pnu (p7pnu) asked a question.

Jamf LDAP Connection

Hi,

 

We're trying to connect Jamf to Okta UD via LDAP. The service account we're using has MFA turned on and it's erroring out because of that. Is it best practice to turn off MFA for an Okta service account (read only admin) to connect LDAP? Is there another alternative to OTP that can be implemented as a second factor?

 

Thanks,

Eric


  • User15905896560008893663 (Vendor Management)

    My name is Daniel, and I will be assisting you.

    Yes, it is best practice to exclude MFA for the service account. You can design a new policy to set at the top (#1) for that user specifically. 

    You can also add a new multifactor enrollment for that user (add him to a specific group) to not enroll the user, or add him to the exclude section of the existing ones.

    Expand Post
    • 5k9h7 (5k9h7)

      Hi would you be able to provide more details on how this is possible? I am trying to do the same thing but I am running into a roadblock. Since the Service Account for the LDAP Interface has to have Read Only admin privileges I can't figure out how to exempt it from MFA. I have tried setting up MFA exemption policies and they work until i make the user a Read Only admin then they are blocked from logging in without MFA.

      Expand Post
This question is closed.
Loading
Jamf LDAP Connection