<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00009uLXPDCA4Okta Classic EngineIntegrationsAnswered2024-01-06T00:51:04.000Z2024-01-05T19:03:44.000Z2024-01-06T00:51:04.000Z

JoanneM.03124 (Customer) asked a question.

Custom Group Profile Attributes from Source org are resetting the Group Profile Attributes in the target org to "undefined"

We have Org2Org set up, and have configured push groups. These groups have custom attributes set to "true" or "false" in the target org. The product manager for the target org let me know that these attributes are being changed to "undefined" whenever the groups push from the source org.

 

I tried to remedy this by adding the same custom attributes in the source groups and configuring them identically, but it still changes them back to "undefined" every push.

 

I had originally been using AD groups for the app assignment and Okta groups for the push. I've also tried switching the groups so that the AD group is the push group and the Okta group is the assignment group, but it still changes it back to "undefined'. These custom group profile attributes are critical in the target org, so I need it to stop changing them.

 

Has anyone experienced this or know why it's happe


  • Mihai N. (Okta, Inc.)

    Hi @JoanneM.03124 (Customer)​ , Thank you for reaching out to the Okta Community! 

     

    While I was researching this, I’ve noticed that you’ve also opened a Support ticket, so please continue working with my colleagues to clarify the details for your specific implementation. 

    In the meantime, I’m posting a response here for anyone else in the Okta Community who may have similar questions. 

    Custom group attributes are not supported by the Push Groups feature. 

    https://support.okta.com/help/s/article/okta-push-group-does-it-support-custom-group-attribute-for-group-push-mapping?language=en_US

     

     

     

    Regards.

    --------------------------------

    Earn Today: New Okta Community Badges Have Arrived

    Expand Post
    • JoanneM.03124 (Customer)

      Thanks @Mihai N. (Okta, Inc.)​ ! We actually didn't want to push the attributes. We just don't want the attributes wiped from the target group.

      I even tried setting up another intermediary group, with the intention of pushing the users to the intermediary group without attributes and then using group rules to populate the group with attributes, but I was unable to do that since the group with attributes is assigned an admin role.

      Expand Post
      • Mihai N. (Okta, Inc.)

        Yup, I understood that part just wanted to add some info for anyone else in the Community who might be looking up the push group/group attributes issues.

        For your specific use case, I think this is a feature limitation as the "group attributes" are a relative new feature that was not meant to be used in the context of Org2Org provisioning, but I do not want to jump to conclusions. It's better to let our Support team investigate and perhaps run it by Engineering or the Product Team to confirm the behaviors, limitations and possible solutions.

         

        Regards.

        --------------------------------

        Earn Today: New Okta Community Badges Have Arrived

        Expand Post
This question is closed.
Loading
Custom Group Profile Attributes from Source org are resetting the Group Profile Attributes in the target org to "undefined"