Manage Active Directory users and groups

When you complete your Active Directory (AD) integration, you'll want to import and manage user and group data. Use these topics to learn how to import and manage user and group data.

The AD user profile schema requires both the first and last name. You can create an Okta sourced user without a first or last name, but you cannot import an AD user into Okta without a first and last name.

To deactivate user accounts temporarily, use the Suspend procedure. See Suspend and unsuspend users. If you set an AD-managed account into Password Reset status, the user can still access Okta Mobile by using PIN or FaceID authentication.

Topics