Connect Okta
Use this guide to let Cracken read users and groups from Okta.
Prerequisites
- Access to the Okta Admin Console
- Permission to create an API token
- A dedicated Okta user with the Read-Only Admin role
- A Cracken realm where you can configure data integrations
Prepare the credential
The API token inherits the token creator's permissions. A Read-Only Admin provides the required read access, including:
okta.users.readokta.groups.read
In Security → API → Tokens, create a token and copy it when shown. Record the Okta org URL,
such as https://example.okta.com. If the Admin Console URL contains -admin, remove that segment.
Connect Okta
- Open Integration Center → Data Integrations.
- On the Okta card, click Install.
- Enter the API Token and Okta Domain.
- Click Test Connection, then Save & Connect.
Cracken can list users and groups within the token creator's administrative scope.
Sources
Next steps
- Data Integrations — Review how connected security data flows into Cracken.
- Operations — Use the live user and group queries during assessment work.