Grouper Okta provisioner

Grouper Okta provisioner

Links

External system

Okta external system

Provisioning general

Provisioning type is membershipObjects

 

Provisioning groups

You can search by name or id.  You should cache the name and id.

API documentation

Grouper name

Type

Required?

Okta API

Description

Grouper name

Type

Required?

Okta API

Description

id

String

required

id

This is the id read from Okta.  Select only.  This should not be translated from Grouper, and the target attribute should be cached.

name

String

required

profile.name

This is the name of the group on the Okta side.

description

String

not required

profile.description

This is the description of the group on the Okta side.

Provisioning users

You should cache the login and id.

API documentation

Grouper name

Type

Required?

Okta API

Description

Grouper name

Type

Required?

Okta API

Description

id

String

required

id

This is the id read from Okta.  Select only.  This should not be translated from Grouper, and the target attribute should be cached.

email

String

required

profile.email

Email address

firstName

String

required

profile.firstName

First name of the user

lastName

String

required

profile.lastName

Last name of the user

login

String

required

profile.login

Login username (email format) of the user

Okta Provisioner also supports custom attributes for users. The name of the custom attribute must begin with "profile." The next three screenshots below show how to configure a custom attribute:

 

 

 

Sample config

Carefully review these settings if you are making a similar provisioner

 

Developer notes

Developer notes