<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007Ynln7CABOkta Classic EngineAuthenticationAnswered2024-04-17T09:50:22.000Z2022-04-05T16:13:42.000Z2022-04-06T15:29:36.000Z

tqcgw (tqcgw) asked a question.

More than AD directory for delegated authentication

Hi,

We have separate BU entities. Each one has its own Active Directory and app. We want to delegate user authentication for each BU to the right AD. Is there any way to do that with one Okta tenant architecture?

Thx


  • Mihai N. (Okta, Inc.)

    Hi @tqcgw (tqcgw)​ , Thank you for reaching out to the Okta Community!

     

    As long as all the BUs have their own dedicated AD domain, Delegated Authentication will be routed to each user's source AD. You can integrate as many AD domains as desired in one Okta tenant (AKA org).

     

    For example:

     

    User1 will be imported from AD domain company1.com → when User1 wants to log in, DEL_AUTH will check with company1.com AD.

     

    User2 will be imported from AD domain company2.com → when User2 wants to log in, DEL_AUTH will check with company2.com AD.

     

    and so on.

     

     

    Hope this helps!

     

     

    Expand Post
This question is closed.
Loading
More than AD directory for delegated authentication