<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00008uQj1cCACOkta Classic EngineAuthenticationAnswered2023-03-11T00:03:30.000Z2023-03-10T19:47:11.000Z2023-03-11T00:03:30.000Z

GeorgeM.65301 (Customer) asked a question.

User with accounts in multiple Active Directory Domains

Trying to understand the possibilities here and seek some hints/assistance.

 

Having three different domains where every user has an account in the @global.com domain, but some users also have accounts to other regional domains with no trust.

john@global.com who has access to the "global app"

john@emea.com who has access to the "emea app"

john@northamerica.com who has access to the "northamerica app"

 

Is it possible for john@global.com to gain access to "emea app" without login as john@emea.com?

 

Account linking sounds interesting but not sure if this will work or whether Org2Org is another possibility.

https://developer.okta.com/docs/concepts/identity-providers/*account-linking

https://www.okta.com/integrations/okta-org2org/

 

Thank you

 

 


  • Paul S. (Okta, Inc.)

    Hello @GeorgeM.65301 (Customer)​ Thank you for reacting out to our Community!

     

    I think it's safe to assume that you have only one Okta org, if this is the case then this is not possible as the username for the Okta account is unique and static.

    If you have multiple Okta orgs then this can be done thought Org2Org and connect all Okta orgs and give access to users to the required Org.

     

    Community members help others by clicking Like or Select as Best on responses. Try it today.

    Expand Post
This question is closed.
Loading
User with accounts in multiple Active Directory Domains