This article explains how to connect Okta Workforce Identity Cloud to Workbench.
Step 1: Enable console access
-
Create a user in Okta for Expel.
-
Select Directory and People.
-
Under People select Add person.
-
User type: User
-
First name: Expel
-
Last name: SOC
-
Username: soc+<Your_Organization_Name>@expel.io
Tip
Yes, the "+" sign is part of the email address, and it's important. Click here to find out why.
-
Primary email: same as username
-
Password: set by user
-
Select Send user activation email now.
-
-
-
Notify your customer success engineer that the registration email is sent.
Step 2: Generate API credentials
-
Sign into your Okta organization as a user with Read-Only Admin privileges. API tokens have the same permissions as the user who creates them, and if the user permissions change, the API token permissions also change.
-
Okta permissions table:
https://help.okta.com/oie/en-us/Content/Topics/Security/administrators-admin-comparison.htm
-
-
Open the API page.
-
If you use the Developer Console, select Tokens from the API menu.
-
If you use the Administrator Console (Classic UI), select API from the Security menu, and then select Tokens.
-
-
Click Create Token.
-
Name your token ExpelAPI and click Create Token.
Note
Make note of your API token, as you only see it 1 time.
-
Collect your Okta URL (also called an Okta domain).
-
Sign in to your Okta organization with your administrator account.
-
Look for the Okta domain in the upper right corner of the dashboard.
-
Step 3: Configure the technology in Workbench
-
Log into https://workbench.expel.io.
-
Navigate to Settings > Security Devices.
-
At the top of the page, click Add New Device.
-
Search for and select Okta.
-
Complete all fields using the credentials and information you collected in Step 1 and Step 2.
-