Skip to main content

Connect Okta

Use this guide to let Cracken read users and groups from Okta.

Prerequisites

  • Access to the Okta Admin Console
  • Permission to create an API token
  • A dedicated Okta user with the Read-Only Admin role
  • A Cracken realm where you can configure data integrations

Prepare the credential

The API token inherits the token creator's permissions. A Read-Only Admin provides the required read access, including:

  • okta.users.read
  • okta.groups.read

In Security → API → Tokens, create a token and copy it when shown. Record the Okta org URL, such as https://example.okta.com. If the Admin Console URL contains -admin, remove that segment.

Connect Okta

  1. Open Integration Center → Data Integrations.
  2. On the Okta card, click Install.
  3. Enter the API Token and Okta Domain.
  4. Click Test Connection, then Save & Connect.

Cracken can list users and groups within the token creator's administrative scope.

Sources

Next steps

  • Data Integrations — Review how connected security data flows into Cracken.
  • Operations — Use the live user and group queries during assessment work.