Update group profile attributes for Access Requests

Early Access release

Define user-friendly display names and descriptions for groups being used in Access Requests to make it easier for requesters and approvers to understand the access level of the resource.

The User-friendly group name and description feature allows super admins or users with Manage group permissions to use the endUserDisplayName and endUserDisplayDescription group profile attributes for Okta-sourced groups. When requesters and approvers request or approve access, the name and description you set using these attributes is visible to them and provides context.

When you enable the feature, these attributes are added as custom attributes to the default group profile for Okta and become available automatically for all Okta-sourced groups.

To make a group's user-friendly name and description available to requesters and approvers, you must complete the following tasks:

  • Populate the attribute values.

  • Update a condition that references the group in its access scope.

  • Ensure that the condition is active.

The user-friendly group name and description is only available for access requests processed by request conditions. It isn't available for access requests processed by request types.

If you haven't entered values for these attributes or have deleted them, Okta displays the values specified for name and description attributes to requesters and approvers. If you deleted these attributes and need them back, see Add custom attributes to the default group profile.

Update group profile attributes

  1. In the Admin Console, go to DirectoryGroups.
  2. Go to the group's Profile tab.

  3. Click Edit.

  4. In the End User Display Name field, enter a name for the group.

  5. In the End User Display Description field, enter a description for the group.

  6. Click Save.

  7. Create or update an access request condition that references this group in the Access level section and enable the condition. When you enable the condition, the name and description become available to requesters. See Re-enable a condition for group changes.

  8. Repeat steps 1–7 for each group or update attributes simultaneously for multiple groups using Okta APIs. See Replace group.

User experience

When requesters select a tile from their dashboard to request access, they see the values for access level name and description that you set in the endUserDisplayName and endUserDisplayDescription attributes for the group. Similarly, approvers see the user-friendly name and description in the access level name and description fields in the request's details.

Related topics

Create an access request condition

Manage access request conditions

Add custom attributes to the default group profile