
RenatoO.17465 (Customer) asked a question.
Hey,
I'm creating a new role for our IT team which will allow them access to deactivate users within Okta, however I've created this new role and have given as much access as possible with the role, but for some reason out team are still not able deactivate users they get the following error (see attached).
I'm so stumped and I dont want to give them super admin.
Thanks

Hello @RenatoO.17465 (Customer) Thank you for posting on our Community page!
I would assume the role is a Custom role, correct? Please make sure that the options to "Edit users' lifecycle states" is enabled for this role.
A good thing to note is to make sure that this role is not tied to changes of users from a specific group. Otherwise they will not be able to make changes outside of that group.
Please also see our doc below:
https://help.okta.com/en-us/content/topics/security/administrators-admin-comparison.htm
https://help.okta.com/en-us/content/topics/security/custom-admin-role/custom-admin-roles.htm
Thank you for reaching out to our Community and have a great day!
--
Help others in the community by liking or hitting Select as Best if this response helped you.