
ShoichiroK.00155 (LAC Co., Ltd) asked a question.
When integrating Okta with Active Directory (AD), does the AD-specific password policy created on Okta still apply to users imported from AD into Okta, even if AD's delegated authentication is turned off?

Hi @ShoichiroK.00155 (LAC Co., Ltd) , Thank you for reaching out to the Okta Community!
If Delegated Authentication is disabled, then any user authentication to Okta services is subject to the Okta specific Password policy configuration.
Users would retain essentially two different password, one for login into Okta services and separate one for AD related authentication.
If you are interested in users maintaining the same password for Okta and AD while not using Delegated Authentication, you can perhaps look into the "Synchronize passwords from Okta to Active Directory" feature.
If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you.
Hope my answer helps!
--
Help others in the community by liking or hitting Select as Best if this response helped you.
Collect them all. Learn a new skill and earn a new Okta Learning badge.
Just released: More Okta Community badges just added
Join the discussion for our Ask Me Anything on September 29, 2025: Device Assurance. Ask our expert questions.