Okta Training Master
What is the Okta Administrator Dashboard? - answer The Okta Administrator
Dashboard page is the first page you see as an Okta admin. This page provides you
with a summary of key Okta and app usage and activity and notifies you of any
problems or outstanding work to be completed. The side bar provides shortcuts to the
most commonly performed tasks.
SCIM - answer System for Cross-domain Identity Management
3 Types of accounts that can exist within Okta - answerOkta Mastered
Directory Mastered
Application Mastered people
SAAS - answerSoftware as a Service is a software licensing and delivery model in
which software is licensed on a subscription basis and is centrally hosted. SaaS is
typically accessed by users using a thin client via a web browser.
What is an Okta Admin? - answerAn abbreviation of administrator. This is the
individual(s) who have access to the Okta Administrator Dashboard. They control the
following:
-Provisioning and Deprovisioning
-Assigning of apps
-Resetting Passwords
-Overall End-User Experience.
Only admins have the administrator button on the upper right side of the My
Applications Page.
Super Admin - answerCan do everything in OKTA
IAM - answerWho you are. What you are able to do. Who you can interact with.
Authentication > Authorization > Privileges. In computer security, the security and
business discipline that "enables the right individuals to access the right resources at
the right times and for the right reasons".
What is an "App"? - answerAn abbreviation of application. Essentially, it is a web-based
site used to perform any number of specific tasks, and requires authentication from end
users by signing in.
Org. Admin - answerView groups
add users to groups
CANNOT add users to a group assigned admin privileges
,can remove users from group
can create groups
cannot assign admin privileges to a group
can delete groups
What does the "Status" portion of the main dashboard page provide information on? -
answerThis is your notification inbox which provides you with a list of tasks you need to
complete and past actions you've taken. This section includes search fields for your
people and applications.
group admin - answercan only view groups, add users to group and remove users.
cannot add users to a group assigned by admin priv, create group, assign admin
privileges to a group or delete groups
IDaaS - answerAn authentication infrastructure that is built, hosted and managed by a
third-party service provider. Thought of as single sign-on (SSO) for the cloud. The
challenges to SaaS and the advantages over on-premises solutions Challenge >
Complexity quickly increases with the number of cloud based applications with different
password requirements and expiration cycles. Advantage > alleviate concerns by
providing SSO across applications.
app admin - answercan only view group
The challenges to SaaS and the advantages over on-premises solutions -
answerChallenge > Complexity quickly increases with the number of cloud based
applications with different password requirements and expiration cycles. Advantage >
alleviate concerns by providing SSO across applications.
What does the "Usage" portion of the main dashboard page provide information on? -
answerDisplays usage and app statistics for your organization. Expand this section to
view Apps with Most Sign-Ins and Users with Most Okta Sign-Ins.
There can be a discrepancy between the number of unique sign-ins shown in the Apps
with Most Sign-Ins list and the number in the sidebar of the app usage report. This is
because the dashboard counts unique logins per user in Okta, and the sidebar in the
app usage report counts unique logins per seat or account in the third-party application.
For example, the unique count in the sidebar of the app usage report could be higher
than the dashboard count if one person has multiple accounts in a third party
application.
SAML - How When Why - answerAn open standard for exchanging authentication and
authorization data between parties, in particular, between an identity provider and a
service provider. Best for proprietary non-consumer apps. Safest federated
authentication standard.
,WS FEDeration: How, When & Why - answerExtends WS-Trust to provide a flexible
Federated Identity architecture with clean separation between trust mechanisms,
security token formats, and the protocol for obtaining tokens. In the WS-Federation
Model an Identity Provider is a Security Token Service (STS).
read only admin - answercan only view group
SAML - How/When/Why - answerAn open standard for exchanging authentication and
authorization data between parties, in particular, between an identity provider and a
service provider. Best for proprietary non-consumer apps. Safest federated
authentication standard.
What are "Users" in Okta? - answerIn Okta literature, we generally refer to "users" as
the people who serve as Okta Administrators.
mobile admin - answercan only view group
WS FEDeration - How/When/Why - answerExtends WS-Trust to provide a flexible
Federated Identity architecture with clean separation between trust mechanisms,
security token formats, and the protocol for obtaining tokens. In the WS-Federation
Model an Identity Provider is a Security Token Service (STS).
What are "End Users" in Okta? - answerWhen we refer to "end users" we are generally
referring to the people who have their own Okta homepage (My applications), using
chiclets to authenticate into all of their apps. These are people the administrators serve.
That is, those who use Okta chiclets to access their apps, but have no administrative
controls.
What does the "Recent Administrative Activity" portion of the main dashboard page
provide information on? - answerDisplays select events from the system log (e.g., app
configuration or assignment information). Click on the system log shortcut to view
everything in the system log.
IDP (Identity Provider) vs SP (Service Provider) initiated sign on flows - answer(IdP) An
online service or website that authenticates users on the Internet by means of security
tokens, one of which is SAML 2.0.
Benefits of using Federation vs Password Vaulting (Secure Web Application) -
answerFederation exchanges credential info between IdP and SP vs storing multiple
user passwords in a secure digital location.
help desk - answercan only view group
API Access Management Admin - answercan only view groups
, What does the "Shortcuts" portion of the main dashboard page provide information on?
- answerLinks to frequently used tasks.
Advantages of Okta Application Network (OAN) Privacy, Security, Efficiency -
answerEnable admins to create new SWA apps leveraging OKTA security features.
While creating the new app it's possible to hide from end user during its creation. Once
this app is created the OAN will include on their Quality Assurance to guarantee that it
works and also that receives updates when is needed
Describe browser plug-ins and (how to troubleshoot issues) - answerThe Okta browser
plugin enables you to automatically sign into applications that would otherwise require
you to manually enter your credentials (e.g., applications that do not support SAML or a
direct form POST to a URL). Using the plugin enables you to use SSO for a broader
range of applications. To enhance security, the plugin only works with trusted and
verified sites. If you have not installed the browser plugin but you have one or more
applications that require it, a notice is published on your applications page along with a
link to the plugin installation file
-Automatic app sign-in
-Automatically initiate an Okta login
-Automatically fills in credentials on sign-in pages
-Automatically inserts passwords on "password update" pages
-Monitors password updates
How, When, Why to use SWA (Secure Web Authentication) - answerA browser plug-in
that facilitates Web site authentication.
What does the "Reports" portion of the main dashboard page provide information on? -
answerLinks to each of your reports.
What is the "Tasks" Page? - answerThe Tasks Page adds detail to the list of tasks that
are displayed in the Status section of the Dashboard page. Links are provided to help
you complete the tasks.
SSO - answerSingle Sign On
Advantages of Okta Application Network (OAN) - answerPrivacy, Security, Efficiency
Explain the reveal password feature - answerThe Password reveal feature allows end
users to see the passwords of their apps. This is especially useful if end users need to
reenter a long, complicated, and randomly-generated password into another device.
For this feature to to work:
An admin must enable Password reveal for the particular app.
The end user must have permissions to manage the app's password.
End users cannot reveal the password of an app configured with shared credentials.
What is the Okta Administrator Dashboard? - answer The Okta Administrator
Dashboard page is the first page you see as an Okta admin. This page provides you
with a summary of key Okta and app usage and activity and notifies you of any
problems or outstanding work to be completed. The side bar provides shortcuts to the
most commonly performed tasks.
SCIM - answer System for Cross-domain Identity Management
3 Types of accounts that can exist within Okta - answerOkta Mastered
Directory Mastered
Application Mastered people
SAAS - answerSoftware as a Service is a software licensing and delivery model in
which software is licensed on a subscription basis and is centrally hosted. SaaS is
typically accessed by users using a thin client via a web browser.
What is an Okta Admin? - answerAn abbreviation of administrator. This is the
individual(s) who have access to the Okta Administrator Dashboard. They control the
following:
-Provisioning and Deprovisioning
-Assigning of apps
-Resetting Passwords
-Overall End-User Experience.
Only admins have the administrator button on the upper right side of the My
Applications Page.
Super Admin - answerCan do everything in OKTA
IAM - answerWho you are. What you are able to do. Who you can interact with.
Authentication > Authorization > Privileges. In computer security, the security and
business discipline that "enables the right individuals to access the right resources at
the right times and for the right reasons".
What is an "App"? - answerAn abbreviation of application. Essentially, it is a web-based
site used to perform any number of specific tasks, and requires authentication from end
users by signing in.
Org. Admin - answerView groups
add users to groups
CANNOT add users to a group assigned admin privileges
,can remove users from group
can create groups
cannot assign admin privileges to a group
can delete groups
What does the "Status" portion of the main dashboard page provide information on? -
answerThis is your notification inbox which provides you with a list of tasks you need to
complete and past actions you've taken. This section includes search fields for your
people and applications.
group admin - answercan only view groups, add users to group and remove users.
cannot add users to a group assigned by admin priv, create group, assign admin
privileges to a group or delete groups
IDaaS - answerAn authentication infrastructure that is built, hosted and managed by a
third-party service provider. Thought of as single sign-on (SSO) for the cloud. The
challenges to SaaS and the advantages over on-premises solutions Challenge >
Complexity quickly increases with the number of cloud based applications with different
password requirements and expiration cycles. Advantage > alleviate concerns by
providing SSO across applications.
app admin - answercan only view group
The challenges to SaaS and the advantages over on-premises solutions -
answerChallenge > Complexity quickly increases with the number of cloud based
applications with different password requirements and expiration cycles. Advantage >
alleviate concerns by providing SSO across applications.
What does the "Usage" portion of the main dashboard page provide information on? -
answerDisplays usage and app statistics for your organization. Expand this section to
view Apps with Most Sign-Ins and Users with Most Okta Sign-Ins.
There can be a discrepancy between the number of unique sign-ins shown in the Apps
with Most Sign-Ins list and the number in the sidebar of the app usage report. This is
because the dashboard counts unique logins per user in Okta, and the sidebar in the
app usage report counts unique logins per seat or account in the third-party application.
For example, the unique count in the sidebar of the app usage report could be higher
than the dashboard count if one person has multiple accounts in a third party
application.
SAML - How When Why - answerAn open standard for exchanging authentication and
authorization data between parties, in particular, between an identity provider and a
service provider. Best for proprietary non-consumer apps. Safest federated
authentication standard.
,WS FEDeration: How, When & Why - answerExtends WS-Trust to provide a flexible
Federated Identity architecture with clean separation between trust mechanisms,
security token formats, and the protocol for obtaining tokens. In the WS-Federation
Model an Identity Provider is a Security Token Service (STS).
read only admin - answercan only view group
SAML - How/When/Why - answerAn open standard for exchanging authentication and
authorization data between parties, in particular, between an identity provider and a
service provider. Best for proprietary non-consumer apps. Safest federated
authentication standard.
What are "Users" in Okta? - answerIn Okta literature, we generally refer to "users" as
the people who serve as Okta Administrators.
mobile admin - answercan only view group
WS FEDeration - How/When/Why - answerExtends WS-Trust to provide a flexible
Federated Identity architecture with clean separation between trust mechanisms,
security token formats, and the protocol for obtaining tokens. In the WS-Federation
Model an Identity Provider is a Security Token Service (STS).
What are "End Users" in Okta? - answerWhen we refer to "end users" we are generally
referring to the people who have their own Okta homepage (My applications), using
chiclets to authenticate into all of their apps. These are people the administrators serve.
That is, those who use Okta chiclets to access their apps, but have no administrative
controls.
What does the "Recent Administrative Activity" portion of the main dashboard page
provide information on? - answerDisplays select events from the system log (e.g., app
configuration or assignment information). Click on the system log shortcut to view
everything in the system log.
IDP (Identity Provider) vs SP (Service Provider) initiated sign on flows - answer(IdP) An
online service or website that authenticates users on the Internet by means of security
tokens, one of which is SAML 2.0.
Benefits of using Federation vs Password Vaulting (Secure Web Application) -
answerFederation exchanges credential info between IdP and SP vs storing multiple
user passwords in a secure digital location.
help desk - answercan only view group
API Access Management Admin - answercan only view groups
, What does the "Shortcuts" portion of the main dashboard page provide information on?
- answerLinks to frequently used tasks.
Advantages of Okta Application Network (OAN) Privacy, Security, Efficiency -
answerEnable admins to create new SWA apps leveraging OKTA security features.
While creating the new app it's possible to hide from end user during its creation. Once
this app is created the OAN will include on their Quality Assurance to guarantee that it
works and also that receives updates when is needed
Describe browser plug-ins and (how to troubleshoot issues) - answerThe Okta browser
plugin enables you to automatically sign into applications that would otherwise require
you to manually enter your credentials (e.g., applications that do not support SAML or a
direct form POST to a URL). Using the plugin enables you to use SSO for a broader
range of applications. To enhance security, the plugin only works with trusted and
verified sites. If you have not installed the browser plugin but you have one or more
applications that require it, a notice is published on your applications page along with a
link to the plugin installation file
-Automatic app sign-in
-Automatically initiate an Okta login
-Automatically fills in credentials on sign-in pages
-Automatically inserts passwords on "password update" pages
-Monitors password updates
How, When, Why to use SWA (Secure Web Authentication) - answerA browser plug-in
that facilitates Web site authentication.
What does the "Reports" portion of the main dashboard page provide information on? -
answerLinks to each of your reports.
What is the "Tasks" Page? - answerThe Tasks Page adds detail to the list of tasks that
are displayed in the Status section of the Dashboard page. Links are provided to help
you complete the tasks.
SSO - answerSingle Sign On
Advantages of Okta Application Network (OAN) - answerPrivacy, Security, Efficiency
Explain the reveal password feature - answerThe Password reveal feature allows end
users to see the passwords of their apps. This is especially useful if end users need to
reenter a long, complicated, and randomly-generated password into another device.
For this feature to to work:
An admin must enable Password reveal for the particular app.
The end user must have permissions to manage the app's password.
End users cannot reveal the password of an app configured with shared credentials.