You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: ATPDocs/okta-integration.md
+23-23Lines changed: 23 additions & 23 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -41,30 +41,30 @@ This section provides instructions for connecting Microsoft Defender for Identit
41
41
42
42
:::image type="content" source="media/okta-integration/okta-admin.png" alt-text="Screenshot showing the Okta admin button":::
43
43
44
-
1. Select **Security** > **API**
44
+
1. Select **Security** > **API**.
45
45
46
-
:::image type="content" source="media/okta-integration/okta-side-menu-security-api.png" alt-text="Screenshot showing the Okta sidemenu":::
46
+
:::image type="content" source="media/okta-integration/okta-side-menu-security-api.png" alt-text="Screenshot showing the Okta sidemenu.":::
47
47
48
48
1. Select **Tokens**
49
49
1. Select **Create Token**.
50
50
51
-
:::image type="content" source="media/okta-integration/create-an-okta-token.png" alt-text="Screenshot showing where to create a token":::
51
+
:::image type="content" source="media/okta-integration/create-an-okta-token.png" alt-text="Screenshot showing where to create a token.":::
52
52
53
53
1. In the Create token pop-up:
54
54
1. Enter a name for your Defender for Identity token
55
55
2. Select Any IP
56
56
3. Select Create token.
57
57
58
-
:::image type="content" source="media/okta-integration/enter-okta-token-details.png" alt-text="Screenshot showing where to enter the Okta token name":::
58
+
:::image type="content" source="media/okta-integration/enter-okta-token-details.png" alt-text="Screenshot showing where to enter the Okta token name.":::
59
59
60
60
1. In the **Token created successfully** pop-up, copy the **Token value** and store it securely. This token is used to connect Okta to Defender for Identity.
61
61
62
-
:::image type="content" source="media/okta-integration/okta-token-created-successfully.png" alt-text="Screenshot of the token created successfully pop up message":::
62
+
:::image type="content" source="media/okta-integration/okta-token-created-successfully.png" alt-text="Screenshot of the token created successfully pop up message.":::
63
63
64
64
### Add Custom user attributes
65
65
66
-
1. Select **Directory > Profile Editor**
67
-
1. Select **User (default)**
66
+
1. Select **Directory > Profile Editor**.
67
+
1. Select **User (default)**.
68
68
1. Select **Add Attributes**.
69
69
1. Set Data type to String.
70
70
1. Enter the Display name.
@@ -90,30 +90,30 @@ To support ongoing API access, Read-Only Administrator role and the custom Defen
90
90
91
91
After assigning both roles, you can remove the the Super Admin role. This ensures that only relevant permissions are assigned to your Okta account at all times.
92
92
93
-
1. Navigate to **Security > Administrator**
94
-
1. Select the **Roles** tab
95
-
1. Select **Create new role**
96
-
1. Set the role name to **Microsoft Defender for Identity**
93
+
1. Navigate to **Security > Administrator**.
94
+
1. Select the **Roles** tab.
95
+
1. Select **Create new role**.
96
+
1. Set the role name to **Microsoft Defender for Identity**.
97
97
1. Select the permissions you want to assign to this role. Include the following permissions:
1. Name the resource set **Microsoft Defender for Identity**
108
+
1. Select the **Resources** tab.
109
+
1. Select **Create new resource set**.
110
+
1. Name the resource set **Microsoft Defender for Identity**.
111
111
1. Add the following resources:
112
112
-**All users**
113
113
-**All Identity and Access Management resources**
114
114
115
-
:::image type="content" source="media/okta-integration/resource-set-information.png" alt-text="Enter the all users and all identitity and access management resources":::
116
-
1. Select **Save selection**
115
+
:::image type="content" source="media/okta-integration/resource-set-information.png" alt-text="Enter the all users and all identitity and access management resources.":::
116
+
1. Select **Save selection**.
117
117
118
118
### Assign the custom role and resource set
119
119
To complete the configuration in Okta, assign the custom role and resource set to the dedicated account.
@@ -133,17 +133,17 @@ To complete the configuration in Okta, assign the custom role and resource set t
:::image type="content" source="media/okta-integration/select-settings-okta-integration.png" alt-text="Screenshot showing how to connect your Okta instance":::
136
+
:::image type="content" source="media/okta-integration/select-settings-okta-integration.png" alt-text="Screenshot showing how to connect your Okta instance.":::
137
137
138
138
1. Select **+Connect Okta instance**.
139
-
1. Enter your Okta domain (for example, acme.okta.com)
139
+
1. Enter your Okta domain (for example, acme.okta.com).
140
140
1. Paste the API token you copied from your Okta account.
141
-
1. Select **Save**
141
+
1. Select **Save**.
142
142
143
-
:::image type="content" source="media/okta-integration/connect-okta-instance.png" alt-text="Screenshot showing the connect okta instance pop up page":::
143
+
:::image type="content" source="media/okta-integration/connect-okta-instance.png" alt-text="Screenshot showing the connect okta instance pop up page.":::
144
144
1. Verify that your Okta environment appears in the table as enabled.
145
145
146
-
:::image type="content" source="media/okta-integration/new-okta-domain.png" alt-text="Verify that your Okta environment appears in the table as enabled":::
146
+
:::image type="content" source="media/okta-integration/new-okta-domain.png" alt-text="Verify that your Okta environment appears in the table as enabled.":::
0 commit comments