Configure resource apps

Configure a resource app so you can create a resource connection between it and an AI agent.

Resource apps have a Machine Assignments tab where you can configure the following access methods:
  • Cross App Access (XAA) (recommended): Allows AI agents to connect to the app without prompting users for consent.
  • Brokered Consent: Uses admin-configured credentials to connect an AI agent to the app, and then prompts users for their consent.

Before you begin

Procedure

  1. In the Admin Console, go to Applications and Resources > Applications.

  2. Search for and select a resource app.
  3. Go to the Machine Assignments tab.
  4. Select the Callers tile.
  5. Select Cross App Access (XAA) to configure this access method.
    1. Select Enable to grant access to the app through Cross App Access.
    2. Complete the following fields:
      1. Resource URL: The base URL of the app's resource server.
      2. Issuer URL: The base URL of the app's authorization server. Okta uses this URL to detect token verification requests.
      3. Audience/tenant ID: A unique identifier or audience claim for the authorization server that protects the resource.
    3. Click Save.
  6. Select Brokered Consent to configure this access method.
    1. Select Enable to grant access to the app through a security token service.
    2. Enter a Client ID and Client secret for the client app that you registered with the resource server connector.
    3. If the client app supports scopes, the Scopes field appears. Add the scopes that you want to grant to the resource app.
    4. Click Save.
  7. Click Save.
  8. Optional. Use Edit button to modify your configurations.