You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: ATPDocs/okta-integration.md
+9-9Lines changed: 9 additions & 9 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -48,18 +48,18 @@ This section provides instructions for connecting Microsoft Defender for Identit
48
48
1. Select **Tokens**
49
49
1. Select **Create Token**.
50
50
51
-
:::image type="content" source="media/okta-integration/create-an-okta-token.png" alt-text="Screenshot of the Okta admin portal showing the left-hand navigation menu. The Security section is expanded, displaying options such as General, Authentication Policies, Identity Providers, and others. The API option is highlighted at the bottom of the Security section, indicating where to access API settings.":::
51
+
:::image type="content" source="media/okta-integration/create-an-okta-token.png" alt-text="Screenshot of the Okta admin portal navigation menu. The API option is highlighted, showing where to access API settings.":::
52
52
53
53
1. In the Create token pop-up:
54
54
1. Enter a name for your Defender for Identity token
55
55
2. Select Any IP
56
56
3. Select Create token.
57
57
58
-
:::image type="content" source="media/okta-integration/enter-okta-token-details.png" alt-text="Screenshot of the Okta admin portal on the API > Tokens tab. The interface displays options for Authorization Servers, Tokens, and Trusted Origins. The “Create token” button is highlighted in the lower left area of the screen, indicating where to generate a new API token.":::
58
+
:::image type="content" source="media/okta-integration/enter-okta-token-details.png" alt-text="Screenshot of the Okta admin portal on the API > Tokens tab, indicating how to generate a new API token.":::
59
59
60
60
1. In the **Token created successfully** pop-up, copy the **Token value** and store it securely. This token is used to connect Okta to Defender for Identity.
61
61
62
-
:::image type="content" source="media/okta-integration/okta-token-created-successfully.png" alt-text="Screenshot of the Okta token creation confirmation dialog. A success message states, “Token created successfully!” followed by a warning to save the token now, as it won’t be shown again. Below, the Token Value field displays the token with a copy button.":::
62
+
:::image type="content" source="media/okta-integration/okta-token-created-successfully.png" alt-text="Screenshot of the Okta token creation success message.":::
63
63
64
64
### Add Custom user attributes
65
65
@@ -81,7 +81,7 @@ This section provides instructions for connecting Microsoft Defender for Identit
81
81
1. Select Save.
82
82
1. Verify that the three custom attributes you added are displayed correctly.
83
83
84
-
:::image type="content" source="media/okta-integration/okta-custom-attributes.png" alt-text="Screenshot of the Okta Attributes page. The table lists custom attributes with columns for Display Name, Variable Name, Data type, and Attribute Type. Three attributes are shown: ObjectGuid, DistinguishedName, and ObjectSid. An “Add Attribute” button appears at the top of the table..":::
84
+
:::image type="content" source="media/okta-integration/okta-custom-attributes.png" alt-text="Screenshot of the Okta Attributes page. Three attributes are shown: ObjectGuid, DistinguishedName, and ObjectSid.":::
85
85
86
86
87
87
### Create a custom Okta role
@@ -101,7 +101,7 @@ After assigning both roles, you can remove the Super Admin role. This ensures th
101
101
-**View roles, resources, and admin assignments**
102
102
1. Select **Save role**.
103
103
104
-
:::image type="content" source="media/okta-integration/okta-permissions.png" alt-text="Screenshot showing a list of Okta permissions that need to be assigned when adding a custom role. The User section includes selected permissions such as Suspend users, Unsuspend users, and Clear users sessions. The Identity and Access Management section includes View roles, resources, and admin assignments.":::
104
+
:::image type="content" source="media/okta-integration/okta-permissions.png" alt-text="Screenshot showing a list of Okta permissions that need to be assigned when adding a custom role.":::
105
105
106
106
### Create a resource set
107
107
@@ -112,7 +112,7 @@ After assigning both roles, you can remove the Super Admin role. This ensures th
112
112
-**All users**
113
113
-**All Identity and Access Management resources**
114
114
115
-
:::image type="content" source="media/okta-integration/resource-set-information.png" alt-text="The resource set is named and described as Microsoft Defender for Identity. Under Resources, two entries are listed: Users with All users and Identity and Access Management with All Identity and Access Management resources.":::
115
+
:::image type="content" source="media/okta-integration/resource-set-information.png" alt-text="Screenshot that shows the resource set name is Microsoft Defender for Identity.":::
116
116
117
117
118
118
1. Select **Save selection**.
@@ -135,17 +135,17 @@ To complete the configuration in Okta, assign the custom role and resource set t
:::image type="content" source="media/okta-integration/select-settings-okta-integration.png" alt-text="Screenshot showing the Microsoft Defender for Identity settings page. The Settings menu is selected in the left-hand navigation pane, and under General, the Okta Integration option is highlighted. The right panel displays options to connect or disconnect Okta instances":::
138
+
:::image type="content" source="media/okta-integration/select-settings-okta-integration.png" alt-text="Screenshot showing the Microsoft Defender for Identity settings page with the Okta Integration option is highlighted.":::
139
139
140
140
1. Select **+Connect Okta instance**.
141
141
1. Enter your Okta domain (for example, acme.okta.com).
142
142
1. Paste the API token you copied from your Okta account.
:::image type="content" source="media/okta-integration/connect-okta-instance.png" alt-text="Screenshot showing how to connect your Okta instance.":::
146
146
1. Verify that your Okta environment appears in the table as enabled.
147
147
148
-
:::image type="content" source="media/okta-integration/new-okta-domain.png" alt-text="Screenshot showing the Connect Okta Instance configuration screen in the Microsoft Defender portal. The screen includes required fields for Okta domain name and API token. The integration is toggled to “Enabled.” A blue Save button appears at the bottom of the screen.":::
148
+
:::image type="content" source="media/okta-integration/new-okta-domain.png" alt-text="Screenshot that shows the Okta environment has been added and is enabled.":::
0 commit comments