Configure Okta integration to the Forcepoint SCIM service

To identify users via the Forcepoint SCIM service, you must create a SCIM 2.0 connector application within your Okta instance.

To configure Okta integration:

Steps

  1. Sign in to your Okta account with administrator privileges.
  2. Go to Admin > Applications
  3. Click Add Application. In the list of applications, search for SCIM 2.0 Test App (OAuth Bearer Token). Click Add.
  4. Give the application a name, for example "Forcepoint SCIM".
  5. In the Forcepoint Dynamic Edge Protection management portal, go to Administration > Authentication. Make a note of the Base URL for the Forcepoint SCIM service.
  6. To generate a new authentication token, click the Generate New Token. Make a note of the token.
  7. In the Okta portal, select your Forcepoint application, and go to Provisioning > Integration.
  8. Paste the URL for the Forcepoint SCIM service (from the Administration > Authentication page) into the SCIM 2.0 Base URL field.
  9. Paste the authentication token (generated in step 6) into the OAuth Bearer Token field and click Save.
  10. On the Assignments tab, assign users or groups to the application:
    1. Click Assign, and select Assign to People or Assign to Groups.
    2. Enter the appropriate people and groups that you want to provision to Dynamic Edge Protection, and click Assign for each.
    3. For any users that you add, verify their user-specific attributes, and click Save and Go Back.

Result

Once you have assigned users to the application, the assigned users will be synchronized with the service for endpoint authentication and reporting.