Okta Certified Professional - Study Notes: Creating & Managing Users

0.0(0)
studied byStudied by 0 people
0.0(0)
linked notesView linked note
full-widthCall with Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/53

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No study sessions yet.

54 Terms

1
New cards

What is the purpose of Okta Universal Directory (UD)?

It centralizes user identity data across all sources.

2
New cards

What does a user account enable in Okta?

It enables authentication into Okta.

3
New cards

What are the components of a user account in Okta?

Applications, Groups, Profile, Devices, Admin Roles, Pre-Enrolled Authenticators.

4
New cards

How is a User ID created in Okta?

Automatically when the user is saved and shown at the end of the URL.

5
New cards

What is the default status when importing users from CSV in Okta?

Staged.

6
New cards

What does the 'Staged' user account status mean?

User is created but cannot sign in; used for setup/configuration before activation.

7
New cards

What is the difference between 'Locked out' and 'Suspended' user statuses?

'Locked out' is triggered by exceeding sign-in attempts, while 'Suspended' is an admin action where app assignments remain.

8
New cards

What happens to app assignments when a user is deactivated?

All app assignments are removed, and the password is triggered for deprovisioning downstream.

9
New cards

What is the significance of the 'Pending user action' status?

User is waiting for activation email after being invited.

10
New cards

What step should be taken when a user account is locked out?

Unlock the user account to allow them to attempt sign-in again.

11
New cards
What is Okta Universal Directory?
A centralized system that stores and manages users
12
New cards
What are the four main identity source types in Okta?
Okta-Sourced; Directory-Sourced (AD/LDAP); HR-Sourced; Anything-as-a-Source (CSV-as-a-Source).
13
New cards
What does Okta-Sourced identity mean?
Users are created directly in Okta manually or via CSV import.
14
New cards
What does Directory-Sourced identity mean?
Users and attributes are imported from Active Directory or LDAP.
15
New cards
What does HR-Sourced identity mean?
Users are sourced from an HR system like Workday or SuccessFactors.
16
New cards
What does Anything-as-a-Source mean?
Any system can become a source of truth using CSV-as-a-Source or custom integrations.
17
New cards
What is a user account in Okta?
An identity that allows a user to sign in and access assigned applications.
18
New cards
What does assigning an application to a user do?
It lets the user access the app via their Okta dashboard.
19
New cards
What does adding a user to a group do?
The user inherits the group’s app assignments
20
New cards
What is a user profile?
A collection of attributes describing the user such as username
21
New cards
What happens when a user enrolls a device in Okta Verify?
The device becomes registered in the Okta org.
22
New cards
What are admin roles in Okta?
Privileges assigned to users that allow them to perform administrative tasks.
23
New cards
What are pre-enrolled authenticators?
Admin-configured Okta Verify enrollments created before the user logs in for the first time.
24
New cards
How does Okta generate a user ID?
Automatically at creation; it's displayed in the user’s URL and retrievable via API.
25
New cards
How do you import users using CSV?
Go to Directory → People → More actions → Import users from CSV.
26
New cards
What status does a new CSV-imported user get by default?
Staged.
27
New cards
What happens if you choose to automatically activate users during CSV import?
Users receive Pending user action status and an activation email.
28
New cards
What is the purpose of the Staged user status?
To pre-configure accounts before allowing sign-in.
29
New cards
What is Pending user action status?
The user must activate their account via email before signing in.
30
New cards
What is Active user status?
The user can authenticate and access applications.
31
New cards
When does Password reset status occur?
When a user or admin initiates a password reset.
32
New cards
When does Password expired status occur?
When the user’s password lifetime has expired.
33
New cards
When does Locked out status occur?
When the user exceeds the allowed number of sign-in attempts per password policy.
34
New cards
Why can't a locked-out user sign in even with the correct password?
Because the account must be manually unlocked by an admin.
35
New cards
What is Suspended status?
Admin action preventing sign-in while leaving app assignments intact.
36
New cards
When should you suspend a user?
Security concerns
37
New cards
What happens when a user is deactivated?
All app assignments and password are removed
38
New cards
Which user statuses consume a license?
Active
39
New cards
Which user statuses do NOT consume a license?
Staged and Deactivated.
40
New cards
What tool do you use to troubleshoot user sign-in issues?
System Log.
41
New cards
Where do you filter for user account activity?
Reports → System Log → User account activity.
42
New cards
How do you search for a specific user in System Log?
Use actor.alternateId equals the user’s email.
43
New cards
What does EventType user.account.lock indicate?
The user exceeded the maximum allowed login attempts and is locked out.
44
New cards
What System Log field shows the reason for login failure?
The DisplayMessage field.
45
New cards
How do you fix a locked-out user?
Unlock the account and have the user try again; reset password if needed.
46
New cards
What happens to app assignments when a user is suspended?
They remain assigned; user simply cannot sign in.
47
New cards
What happens to app assignments when a user is deactivated?
They are removed and deprovisioning occurs.
48
New cards
Why use Staged status?
To prepare or configure accounts before enabling sign-in.
49
New cards
Why is Pending user action important?
It signals that account activation is required by the user.
50
New cards
How does Okta Verify enrollment appear in Okta?
As a registered device under the user account.
51
New cards
What is created when a user account is saved?
A unique Okta-generated user ID.
52
New cards
Why is CSV Import useful?
Allows bulk user creation or updates from a spreadsheet.
53
New cards
What System Log filters help pinpoint sign-in issues?
Date/time filters + username search + user.account events.
54
New cards