OKTA PROFESSIONAL EXAM STUDY
GUIDE PART 1 QUESTIONS &
ANSWERS
Identity and Access Management (IAM) - Correct Answers -System that stores,
secures, and manages all these identities and defines access privileges. IAM ensures
that the user is granted controlled access to applications or resources when any type of
user logs in:
Types of IAM includes - Correct Answers --SSO
-MFA
-Access Management
How Okta Integrates Apps - Correct Answers -- Okta "integrates" applications into its
service for you, and you simply deploy these pre-integrated applications to your users
- Users can be authenticated against AD/LDAP directories
For web apps that don't support federated SSO - Correct Answers -- When SWA is
enabled end users see additional link through which they can set/update credentials for
that application only.
- Creds are stored in AES encryption + customer specific private key
- Optionally: Admins can require username/password to be same as Okta credentials
For web apps not in OAN toolkits are available for .NET, JAVA, PHP - Correct Answers
-SAML toolkits are provided by Okta
Provisioning of new accounts, deprovisioning for deactivated users, and keeping
attributes synced across multiple directories - Correct Answers -Enabling User
Management
3 Areas of User Management - Correct Answers -- Bulk user import via CSV
- CRUD within Okta
- Password sync/push across multiple directories
Okta supports user management integration such as: - Correct Answers -OAuth 2.0,
SCIM, SPML
, On-prem apps can be integrated in 2 ways: - Correct Answers --Leveraging Active
Directory
-Using web services to manage user accounts in applications
Okta Identity Cloud - Correct Answers -Independent and neutral platform connecting
right people with the right technology
Okta Identity Cloud is? - Correct Answers -Refers to directory of applications
configuration with service providers, includes AD/LDAP, HR apps(Workday/Bamboo),
email clients
Okta Identity Cloud solves problems with the following: - Correct Answers -- Universal
Directory
- Lifecycle Management
- Adaptive MFA
- SSO
Lifecycle Management(LCM) - - Correct Answers -Task of managing duration and life of
digital identity. Includes automation of user account creation, provision those accounts
to apps with licenses to access required resources, updating account of employee
changes role, OR deactivation of accounts
What is Lightweight Directory Access Protocol(LDAP)? - Correct Answers -Internet
protocol that email and other programs use to lookup information from server
What is Active Directory(AD)? - Correct Answers -LDAP-compliant server released in
2000 by Microsoft, as successor to prior windows account and network management
system.
Social Identity Provider - Correct Answers -Allows your end users to self-register with
your custom applications by first authenticating through their existing social identity
accounts such as Facebook, Google, Microsoft, or LinkedIn.
Okta as a Service Provider - Correct Answers -It integrates with an identity provider
outside of Okta using SAML.
Inbound SAML - Correct Answers -Allows users from external identity providers to SSO
into Okta
- Built upon universal Directory
Smart Card/ PIV Card - Correct Answers -Allows your end users to use smart cards with
a x.509 compliant digital certificate, such as a PIV card, as a primary authentication
factor to sign in to Okta.
Two sign-on methods for Office 365: - Correct Answers --SWA
GUIDE PART 1 QUESTIONS &
ANSWERS
Identity and Access Management (IAM) - Correct Answers -System that stores,
secures, and manages all these identities and defines access privileges. IAM ensures
that the user is granted controlled access to applications or resources when any type of
user logs in:
Types of IAM includes - Correct Answers --SSO
-MFA
-Access Management
How Okta Integrates Apps - Correct Answers -- Okta "integrates" applications into its
service for you, and you simply deploy these pre-integrated applications to your users
- Users can be authenticated against AD/LDAP directories
For web apps that don't support federated SSO - Correct Answers -- When SWA is
enabled end users see additional link through which they can set/update credentials for
that application only.
- Creds are stored in AES encryption + customer specific private key
- Optionally: Admins can require username/password to be same as Okta credentials
For web apps not in OAN toolkits are available for .NET, JAVA, PHP - Correct Answers
-SAML toolkits are provided by Okta
Provisioning of new accounts, deprovisioning for deactivated users, and keeping
attributes synced across multiple directories - Correct Answers -Enabling User
Management
3 Areas of User Management - Correct Answers -- Bulk user import via CSV
- CRUD within Okta
- Password sync/push across multiple directories
Okta supports user management integration such as: - Correct Answers -OAuth 2.0,
SCIM, SPML
, On-prem apps can be integrated in 2 ways: - Correct Answers --Leveraging Active
Directory
-Using web services to manage user accounts in applications
Okta Identity Cloud - Correct Answers -Independent and neutral platform connecting
right people with the right technology
Okta Identity Cloud is? - Correct Answers -Refers to directory of applications
configuration with service providers, includes AD/LDAP, HR apps(Workday/Bamboo),
email clients
Okta Identity Cloud solves problems with the following: - Correct Answers -- Universal
Directory
- Lifecycle Management
- Adaptive MFA
- SSO
Lifecycle Management(LCM) - - Correct Answers -Task of managing duration and life of
digital identity. Includes automation of user account creation, provision those accounts
to apps with licenses to access required resources, updating account of employee
changes role, OR deactivation of accounts
What is Lightweight Directory Access Protocol(LDAP)? - Correct Answers -Internet
protocol that email and other programs use to lookup information from server
What is Active Directory(AD)? - Correct Answers -LDAP-compliant server released in
2000 by Microsoft, as successor to prior windows account and network management
system.
Social Identity Provider - Correct Answers -Allows your end users to self-register with
your custom applications by first authenticating through their existing social identity
accounts such as Facebook, Google, Microsoft, or LinkedIn.
Okta as a Service Provider - Correct Answers -It integrates with an identity provider
outside of Okta using SAML.
Inbound SAML - Correct Answers -Allows users from external identity providers to SSO
into Okta
- Built upon universal Directory
Smart Card/ PIV Card - Correct Answers -Allows your end users to use smart cards with
a x.509 compliant digital certificate, such as a PIV card, as a primary authentication
factor to sign in to Okta.
Two sign-on methods for Office 365: - Correct Answers --SWA