Connectors
Okta
Identity governance: MFA enrollment, stale-account review, and system-log access.
What it covers
Identity governance: MFA enrollment, stale-account review, and system-log access.
Credential to create
Okta API token (SSWS)
Permissions to grant
- Read-only Administrator role (users, policies, and system log)
Setup steps
- In the Okta Admin console (Security > API > Tokens), create a token as a dedicated read-only service admin.
- Enter your Okta org URL (https://your-org.okta.com) and paste the token.
Notes and gotchas
- The token inherits the creating admin's permissions, so create it under a Read-Only Administrator account.
- Okta API tokens expire after 30 days of non-use; the daily runner keeps it active.