<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z0000AH8UPJCQ3Okta Classic EngineAuthenticationAnswered2025-12-01T09:00:31.000Z2024-10-30T18:05:23.000Z2024-10-31T22:07:31.000Z

3xs8g (3xs8g) asked a question.

Entra ID Integration - not provisioning or using Entra as IDP

I am attempting to integrate Entra ID with Okta where Entra would be the primary IDP. I am currently using free tail licenses for both Entra and Okta. I have gone through the setup documentation more times than I can count. I have setup the identity provider for Entra using the SAML 2.0 IDP with JIT to the best of my knowledge.

  1. newly created users in Entra are not being created in Okta
  2. where users match, Okta is not using Entra creds for authentication.
  3. profile mapping does not seem to map first and last name
  4. http://schemas.xmlsoap.org/ws/2005/05/identity/claims/surname
  5. http://schemas.xmlsoap.org/ws/2005/05/identity/claims/givenname

My goal is for this to work similar to if Okta was integrated with Active Directory with delegated authentication. Any advise is welcome.

thank you

 


  • Paul S. (Okta, Inc.)

    Hello @3xs8g (3xs8g)​  Thank you for posting on our Community page!

     

    If the user is unable to login and JIT fails, it would indicate that the IDP setup in Okta might be setup wrong. To locate the problem I would recommend to review the System log and see where the failure happens, Okta's System log's error are usually very accurate and you will be able to pinpoint the issue in the configuration.

    Also make sure that you follow this configuration doc for the implementation:

    https://help.okta.com/en-us/content/topics/provisioning/azure/azure-integrate-main.htm

    Note: you should be able to skip this step :"Map Azure Active Directory attributes to Okta attributes"

     

    Thank you for reaching out to our Community and have a great day!

    --

    Help others in the community by liking or hitting Select as Best if this response helped you.

    Expand Post
This question is closed.
Loading
Entra ID Integration - not provisioning or using Entra as IDP