
44s22 (44s22) asked a question.
We integrated Aiven with Okta SAML, creating an Okta tile for user access. The team would like to add a service account for API key storage and account maintenance. What is the best practice for this service account setup/access?

Hi @44s22 (44s22),
Thank you for posting on the Okta community page!
The best way to approach this would be to make sure that the Service Account will always have an active state in Okta because if at some point it's deactivated then all the API tokens/Syncs made with the account in question would no longer work. I have provided bellow a documentation about Okta statuses:
Additionally, it will be best if the Service Account is Okta mastered in order to make sure that no other configuration will change the status of this account. Also, you should make sure that MFA is required for this user when logging into Okta to strengthen the security access.
I hope the above information is helpful!