Create tokens and labels

Enrolling gateways into Okta Privileged Access requires setup tokens. Labels control access to the server for a given project.

Prerequisites

  • You must be a member of the Okta Privileged Access resource administrator group or a delegated resource administrator.

Create a Okta Privileged Access gateway setup token

A setup token is a Base64 encoded object that includes metadata used to enroll the gateway into an Okta Privileged Access team. To create a setup token for a project:

  1. On the Okta Privileged Access dashboard, go to Resource AdministrationGateways
  2. Click Set up gatewaysCreate setup token.
  3. On the dialog that appears do the following:
    1. Enter a token
    2. Select an existing label or create a label. Labels must be a key-value pair (for example, environment:staging).
    3. Press the Tab or Enter key to finalize the label.
    4. Optional. Repeat this process to add other labels.
    5. Click Save.
    6. Copy the token and then click Done. You need this token when you perform setup using the configuration options. See Setup Token options

Edit labels

You can edit a gateway to add new labels or remove an existing label.

  1. On the Okta Privileged Access dashboard, go to Resource AdministrationGateways
  2. Click Actions Edit, on the gateway you want to edit.
  3. Go to Labels and type in a name to select an existing label or to create a one.
  4. To remove a label, select x on the label.
  5. Click Save.