<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D5WR000010c6vo0AAOkta Classic EngineAuthenticationAnswered2026-06-05T17:05:05.000Z2025-11-24T20:44:46.000Z2026-06-05T17:05:05.000Z

avshch (BCRC) asked a question.

Okta service accounts authentication

Hello,

We have a requirement to authenticate AD service accounts (not associated with humans) used by Microsoft Services to Okta. Is there any Okta product/method to achieve this?

Thanks,


  • Hi @avshch (BCRC)​ , Thank you for reaching out to the Okta Community! 

     

    I'm not currently aware of a direct feature/product that would work for this. 

    However, looking into available options, OPA might be a method of securing the service accounts via an Early Access feature. (With the caveat of some known issues.)

    As far as I understand the implementation, the AD service account itself does not authenticate to Okta using its AD credentials. Instead, the service account's credentials are secured by Okta, and a separate, modern, non-human identity is used for the application or script to authenticate to the Okta service to retrieve the managed AD credential. 

     

    That being said, I recommend opening a case to go over your implementation in detail with one of our colleagues from the Support team as I would not be able to provide an explicit guide on how to achieve this.  

     

    Regards.

    --

    Help others in the community by liking or hitting Select as Best if this response helped you.

    Collect them all. Learn a new skill and earn a new Okta Learning badge.

    Just released: More Okta Community badges just added

    Expand Post
    Selected as Best
  • Hi @avshch (BCRC)​ , Thank you for reaching out to the Okta Community! 

     

    I'm not currently aware of a direct feature/product that would work for this. 

    However, looking into available options, OPA might be a method of securing the service accounts via an Early Access feature. (With the caveat of some known issues.)

    As far as I understand the implementation, the AD service account itself does not authenticate to Okta using its AD credentials. Instead, the service account's credentials are secured by Okta, and a separate, modern, non-human identity is used for the application or script to authenticate to the Okta service to retrieve the managed AD credential. 

     

    That being said, I recommend opening a case to go over your implementation in detail with one of our colleagues from the Support team as I would not be able to provide an explicit guide on how to achieve this.  

     

    Regards.

    --

    Help others in the community by liking or hitting Select as Best if this response helped you.

    Collect them all. Learn a new skill and earn a new Okta Learning badge.

    Just released: More Okta Community badges just added

    Expand Post
    Selected as Best
This question is closed.
Loading
Okta service accounts authentication