Use the Okta user access management connector

This article describes how to set up new provisioning workflows for OIN apps.

Read more

____________

 
Once you have completed setting up the Okta user access management connector, you must create new provisioning workflows for each OIN app, so that you can remove access to those apps via SSO if required. Once that’s done, de-provisioning works for OIN apps exactly the same way it works for all other apps at your installation that have Productiv connectors.
Note: The Okta Lifecycle Management and Okta Advanced Lifecycle Management SKUs are required for Okta de-provisioning. If you are unsure whether your instance of Okta Enterprise includes those SKUs, consult your system administrator.

Before you begin

Before you get started, look at the workflows that have already been set up.
To do this:
  1. Go to the Settings page.
  2. Open the “Access management” tab.
  3. Scroll down until you see the “App workflows” section.
  4. Click the “Apps with workflows setup” tab.
Screenshot 2024-10-17 at 3.02.16 PM.png

Provisioning workflow setup

For every app that you’d like to have de-provisioned via Okta SSO, do the following:
  1. To navigate to the app page, click the app name.
  2. Click the app page’s “Automation” tab.
  3. Look under Provisioning workflow to see if any workflow rules already exist.
Screenshot 2024-10-17 at 3.14.06 PM.png
  1. If a workflow already exists, edit it so that it uses the action method Remove SSO Access via Okta.
  2. If no workflow is yet set up, click an instance to create a new one.
    1. Click the “Deprovision” button to start setting up a deprovisioning workflow. Make sure to specify the action method as “Act via Okta” in the “Set access and provisioning outcome” step.
Screenshot 2024-10-17 at 3.20.43 PM.png
 

Read more

Did this answer your question? Thanks for the feedback There was a problem submitting your feedback. Please try again later.

Still need help? Contact Us Contact Us