last person joined: 10 hours ago 

Enterprise security using ClearPass Policy Management, ClearPass Security Exchange, IntroSpect, VIA, 360 Security Exchange, Extensions and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

ClearPass with Okta LDAP

This thread has been viewed 28 times
  • 1.  ClearPass with Okta LDAP

    Posted May 26, 2021 07:07 PM

    Hi All!

    We are testing a new ClearPass setup and trying to wrap our heads around how to use the Okta LDAP Interface as an auth source. 

    From reading other threads:
    1. The legacy option to use Okta as an auth source has been deprecated
    2. Okta for Pre-Auth with SAML for Onboard is supported

    However, there is an Okta LDAP interface that was recently released which can be used for group membership lookup and authentication:
    OKTA: Set up and manage the LDAP Interface

    We have the Okta LDAP interface working for group membership lookups BUT the user authentication piece is failing.

    Has anyone been successful in getting the authentication to work with the Okta LDAP Interface?

    Is it potentially supported? 


  • 2.  RE: ClearPass with Okta LDAP

    Posted May 27, 2021 02:42 PM
    The Okta LDAPS service is only supported for authorization. You can use it in combination with certificate-based authentication.

    Tim C

  • 3.  RE: ClearPass with Okta LDAP

    Posted Jul 08, 2021 10:43 AM
    Can you please help me figure out how to use Okta LDAP interface for authorization? I added okta as an authentication source and cannot figure out the correct filter to be able to group membership lookups. A sample filter would be greatly appreciated.