Configure enhanced group push for Active Directory OUs

When you choose a group in Okta to push to Active Directory (AD), you must specify the target organizational unit (OU), and pre-select it on the Settings tab of your Active Directory instance.

To pre-select the target OU:

  1. In the Admin Console, go to Directory > Directory Integrations.
  2. Click Active Directory and then click the Provisioning tab.
  3. Click Integration in the SETTINGS list.
  4. In the Group OUs connected to Okta area, select a domain and container.
  5. Click Save.

To specify a target OU:

  1. In the Admin Console, go to Directory > Directory Integrations.

  2. Click Active Directory and then click the Push Groups tab.
  3. Click By name in the PUSHED GROUPS list.
  4. Click Push Groups and select Find Groups by name.
  5. In the Find Group field, enter the name of a group to push.
  6. In the Push group to the following OU pane, select to OU you want to push the group to.
  7. Click Save or Save & Add Another to add another group to push.