<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00008dlxDYCAYOkta Classic EngineSingle Sign-OnAnswered2024-03-25T13:18:41.000Z2023-01-13T19:45:21.000Z2023-01-19T16:37:09.000Z

efnlx (efnlx) asked a question.

Cross domain members sync in Okta via an AD group is not working

Hi,

 

I have 2 domains. Domain A and Domain B. I have an AD group called xyz in Domain A and added the members from the Domain B in the AD group xyz.

 

In order to acheive SSO for an application, we have added the AD group xyz in Okta. After the full sync, the AD group reflects in Okta but does not reflect any users which were added in Domain B

 

Please advise.

 

Note: There is a trust between Domain A and Domain B in AD.

 

 

 


  • flaviu.vrinceanu1.5628408972654734E12 (Customer Success Service Delivery)

    Hi @efnlx (efnlx)​,

     

    Thank you for posting on the Okta community page!

     

    I have done some research and I would suggest to check the system logs to see if there are any events reported there that could lead to the root cause of the issue since users might not have been imported if they do not have all the required attributes populated in Active Directory.

     

    If the import was performed right after the changes were made in AD, this might have been cause due to a replication issue and trying again might import the users. Also, you could check to see that the OU where the users are located is selected in Okta.

     

    ------------------------------------------------------------------------------------------------------------------------------------------------

    Community members help others by clicking Like or Select as Best on responses. Try it today.

    Expand Post
    Selected as Best
  • flaviu.vrinceanu1.5628408972654734E12 (Customer Success Service Delivery)

    Hi @efnlx (efnlx)​,

     

    Thank you for posting on the Okta community page!

     

    I have done some research and I would suggest to check the system logs to see if there are any events reported there that could lead to the root cause of the issue since users might not have been imported if they do not have all the required attributes populated in Active Directory.

     

    If the import was performed right after the changes were made in AD, this might have been cause due to a replication issue and trying again might import the users. Also, you could check to see that the OU where the users are located is selected in Okta.

     

    ------------------------------------------------------------------------------------------------------------------------------------------------

    Community members help others by clicking Like or Select as Best on responses. Try it today.

    Expand Post
    Selected as Best
This question is closed.
Loading
Cross domain members sync in Okta via an AD group is not working