| Push new users |
- Okta automatically creates users in Sophos Cloud when you create them in Okta.
- The username and email address must match for Okta to create the user in Sophos Cloud.
- New users are provisioned as self-service users. They can sign in to Sophos Central until you assign them a user role in the Sophos Central UI.
|
| Push profile updates |
- Updates to a user's first name and last name in Okta are synced to Sophos Cloud.
- You can't update the username or email address from Okta.
|
| Push user deactivation |
- Sophos Cloud doesn't support user deactivation because it doesn't have an inactive state for users.
- Deactivating or unassigning a user in Okta doesn't remove their account from Sophos Cloud. You must delete the account manually in the Sophos Central UI, under .
- You can't delete a user who has an admin role in Sophos Cloud until you remove the role.
|
| Import new users |
- Okta imports users that are created in Sophos Cloud.
- If a user is missing a first or last name, Okta assigns the placeholder values
FNU and LNU.
- Sophos Cloud doesn't have a separate username field, so Okta sets the username to the user's email address when it imports the user.
|
| Import profile updates |
Changes to a user's profile in Sophos Cloud are updated in Okta manually or through scheduled imports.
|
| Push groups |
- You can push groups and their members to Sophos Cloud. See Manage Group Push.
- Group names must be unique across Sophos Cloud.
- Changes that you make to a group's name or description in Okta are pushed to Sophos Cloud.
- Removing a user from a pushed group removes only their group membership. Okta doesn't delete the user from Sophos Cloud.
|