Okta - Webhook Configuration

Created by Thomas Donnelly, Modified on Tue, 4 Mar at 9:57 PM by Thomas Donnelly

Configure Okta Event Types as  Findings in Amplifier

Okta has a hundreds of Event Types that can be used for custom findings in Amplifier via Okta Event Hooks. 

 Configuration 

From Amplifier

  1. Navigate to Integration & Policies
  2. Find the tile named CUSTOM FINDINGS and click CONFIGURE
  3. Expand the Webhook Credentials section and copy the URL.  This will be needed to configure Okta.

From Okta

  1. Click on Workflow then Event Hooks from the left navigation
  2. Click Create Event Hook
  3. Name the Event Hook and paste the URL from your Amplifier Custom Findings web hook.
  4. Under the REQUESTS section add a Custom Header Field
    1. Fieldname = AMP-PROVIDER
    2. Value  = Okta
  5. Select events in the  Subscribe to Events
    1. Note: You can select more but they will show up as the same finding on Amplifier.
  6. Select Continue
  7. Click Verifyto endpoint ownership
    1. Note: It may take up to 30 minutes for Okta events to pump over to Amplifier
  8. You will land on a preview page. Select the Event types top preview the API calls.
  9. Copy the eventType from each call and save this for configuration within Amplifier

From Amplifier

  1. Navigate to Integration & Policies
  2. Find the tile named CUSTOM FINDINGS
  3. Expand the Findings Configuration section and click CONFIGURE
  4. Click ADD FINDINGS on the top right
  5. Type a Finding Name to help your team identify the finding later.
  6. Add the Event Type from step 9 above in the Okta configuration
  7. Select a Severity from the dropdown.
  8. Type a Finding (Display Name). This will be used by the application and shown to end users to make sure it is more end user friendly.
  9. Type a Description which will also be used in the application and for prompts for our Engagement Studio.

Congratulation! You have configured Okta events to create findings in Amplifier.  You can now use these to trigger engagements in the Engagement Studio.

List of Event Types

Here is the full list of events available from Okta: https://developer.okta.com/docs/reference/api/event-types/

Top 10 Useful Events

Event TypeUse Case
app.ldap.password.change.failedTriage if a user is trying to change their password
app.access_request.grantReach out to users to let them know that access to an application was granted.
app.access_request.denyReach out to users to let them know that access to an application was denied.
system.mfa.factor.deactivateValidate that a user deactivated MFA factors
user.account.lock.limitValidate that a user accidentally locked themselves out.
user.account.privilege.grantValidate a user was supposed to be given privilidged access
user.account.reset_passwordValidate a user asked to reset their password

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article