
GregH.00578 (Customer) asked a question.
We use delegated Auth with multiple AD instances. What happens if one of those instances goes down - not the agent, but the AD itself. Will users imported from that AD still be able to sign on? Wil any manual intervention be required (IE: turn off delegated auth for that directory & reset all the users passwords?)

Hi @GregH.00578 (Customer),
Thank you for posting on the Okta community page!
I have done some research on my end and it seems that, if Del Auth is enabled for the AD instances when the AD itself goes down, the users will still be able to login for up to 5 days from the last successful authentication into Okta because the AD credentials are cached when Delegated Authentication is on.
I have provided bellow a documentation about this use case:
I hope the above information is helpful!
Thanks Flaviu