Supported features

The following features and functionality are available with a Sophos Cloud integration.

Feature Description
Push new users
  • Okta automatically creates users in Sophos Cloud when you create them in Okta.
  • The username and email address must match for Okta to create the user in Sophos Cloud.
  • New users are provisioned as self-service users. They can sign in to Sophos Central until you assign them a user role in the Sophos Central UI.
Push profile updates
  • Updates to a user's first name and last name in Okta are synced to Sophos Cloud.
  • You can't update the username or email address from Okta.
Push user deactivation
  • Sophos Cloud doesn't support user deactivation because it doesn't have an inactive state for users.
  • Deactivating or unassigning a user in Okta doesn't remove their account from Sophos Cloud. You must delete the account manually in the Sophos Central UI, under People > Users.
  • You can't delete a user who has an admin role in Sophos Cloud until you remove the role.
Import new users
  • Okta imports users that are created in Sophos Cloud.
  • If a user is missing a first or last name, Okta assigns the placeholder values FNU and LNU.
  • Sophos Cloud doesn't have a separate username field, so Okta sets the username to the user's email address when it imports the user.
Import profile updates

Changes to a user's profile in Sophos Cloud are updated in Okta manually or through scheduled imports.

Push groups
  • You can push groups and their members to Sophos Cloud. See Manage Group Push.
  • Group names must be unique across Sophos Cloud.
  • Changes that you make to a group's name or description in Okta are pushed to Sophos Cloud.
  • Removing a user from a pushed group removes only their group membership. Okta doesn't delete the user from Sophos Cloud.