Connecting Okta to Sastrify as your Identity Provider (IdP) is a foundational step that enables automated insight tracking and identity management. This guide covers the API Service Integration method to link the two platforms.


IN THIS ARTICLE


Prerequisites 


Before configuring the Okta integration, ensure the following: 

  1. A Sastrify account with an Admin permission to manage integrations
  2. An Okta account with admin access to authorize API service integrations

Supported Scopes


The Sastrify Okta integration requests the following OAuth 2.0 scopes:


ScopeDescription
okta.users.readRead user profiles to import employee identities and track access across your organization.
okta.apps.readRead the list of applications in your Okta tenant to discover software in use and identify Shadow IT
okta.logs.readRead system logs to track application usage patterns, frequency, and user activity

Step 1: Open the Okta integration setup page in Sastrify



  1. Log in to your Sastrify platform.
  2. Navigate to Integrations > identity Provider.
  3. Locate the Okta card, and click Connect.
  4. A setup page will open, displaying the required configuration details and input form.

Step 2: Authorize Sastrify in Okta


  1. Log in to your Okta Admin Console.
  2. Navigate to Applications > API Service Integrations.

  3. Click the Add Integration button.

  4. Search for and select Sastrify Insights from the list of available integrations.

  5. Review the requested permissions (scopes) and click Install & Authorize.




Step 3: Retrieve Credentials


  1. Once authorized, Okta will display your Client Secret

  2. Copy this immediately, and click Done.
  3. Copy the Client ID and the entire Okta Domain (the full URL) as shown.

Step 4: Finalize the Connection in Sastrify


  1. Return to the Okta setup form in your Sastrify platform.

  2. Domain: From the Okta domain URL you copied earlier, enter the domain part (e.g., okta.com) in the top field.

  3. Subdomain: Take only the unique prefix before .okta.com and enter it as your Okta Subdomain.

  4. Input the Client ID and Client Secret into their respective fields.

  5. Click Connect to finalize the integration.