Import groups from Active Directory

You can import groups from any forest or domain connected to Okta. The Okta AD agent detects all groups in the domain or the Organizational Units (OUs) that you select. If you register an Okta AD agent for more than one domain and you have the root OU selected for all domains, it imports all groups.

Okta does not support nested groups. Okta imports all nested directories for group members and adds the user to each group in Okta.

  1. In the Admin Console, go to Directory > Directory Integrations.
  2. Select an Active Directory instance and click the Settings tab.
  3. Scroll to Group OUs connected to Okta and then select the OUs that you want to import.
  4. Scroll down and click Save Settings.