<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

kbazp (kbazp) asked a question.

Okta user group assignment based on source ip address

We need to create an application authentication policy based on a user source IP address. Is it possible to assign a user to Okta user group based on user source IP address? or have a match against network zone defined at Okta?

Thanks,


  • b5n6c (b5n6c)

    Hi Aleksey,

     

     Yes, it's possible to assign user to app policy based on the user IP.

    All you need to define all the IP's in the network zone in okta and while creating authentication policy, add that network zone in which you've defined the IP's. ( Please refer the screenshot2.)

     

    For creating Network zone, please follow steps :

    Go to admin console > go to security > go to networks > Click on add zone, where you would be able to define zone. ( Please refer the screenshot1)

     

    Please do let me know if you have any query on this.

    Expand Post
    • Unknown file type
      The file is no longer available.
    Selected as Best
  • b5n6c (b5n6c)

    Hi Aleksey,

     

     Yes, it's possible to assign user to app policy based on the user IP.

    All you need to define all the IP's in the network zone in okta and while creating authentication policy, add that network zone in which you've defined the IP's. ( Please refer the screenshot2.)

     

    For creating Network zone, please follow steps :

    Go to admin console > go to security > go to networks > Click on add zone, where you would be able to define zone. ( Please refer the screenshot1)

     

    Please do let me know if you have any query on this.

    Expand Post
    • Unknown file type
      The file is no longer available.
    Selected as Best
  • b5n6c (b5n6c)

    Attaching the screenshot 1

    • Unknown file type
      The file is no longer available.
This question is closed.
Loading
Okta user group assignment based on source ip address