# okta

Okta is an identity and access security company providing extensible platforms and developer resources for securing customer, workforce, and non-human identities.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## How Does CockroachDB Automate SQL User Lifecycle Management?

DevFeed: [How Does CockroachDB Automate SQL User Lifecycle Management?](<https://devfeed.tech/articles/how-does-cockroachdb-automate-sql-user-lifecycle-management-23818.md>)

Original publisher: [Read original article](<https://cockroachlabs.com/blog/sql-user-lifecycle-management-automation>)

Author: Pritesh Lahoti,Biplav Saraf,Sourav Sarangi

Published: 2026-08-28T00:00:00Z

Content type: tutorial

Language: en

Sources: [Cockroach Labs](<https://devfeed.tech/sources/cockroach-labs.md>)

Topics: [CockroachDB](<https://devfeed.tech/topics/cockroachdb.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [active directory](<https://devfeed.tech/topics/active-directory.md>), [Entra ID](<https://devfeed.tech/topics/entra-id.md>), [okta](<https://devfeed.tech/topics/okta.md>), [Microsoft](<https://devfeed.tech/topics/microsoft.md>)

Tags: [active-directory](<https://devfeed.tech/tags/active-directory.md>), [cockroachdb](<https://devfeed.tech/tags/cockroachdb.md>), [entra-id](<https://devfeed.tech/tags/entra-id.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [microsoft](<https://devfeed.tech/tags/microsoft.md>), [okta](<https://devfeed.tech/tags/okta.md>)

### AI overview

The article addresses how CockroachDB automates SQL user lifecycle management and notes that large enterprises commonly rely on identity provider and identity and access management platforms such as Okta, Microsoft Entra ID, Microsoft Active Directory, and Ory.

### Source excerpt

Fortune 1000 enterprises widely rely on major Identity Provider (IdP) and Identity and Access Management (IAM) platforms like Okta, Microsoft Entra ID, Microsoft Active Directory, and Ory.

## Okta Cross App Access (XAA / ID-JAG) in Nirmata AIControls: standards-based authorization for AI agents

DevFeed: [Okta Cross App Access (XAA / ID-JAG) in Nirmata AIControls: standards-based authorization for AI agents](<https://devfeed.tech/articles/okta-cross-app-access-xaa-id-jag-in-nirmata-aicontrols-standards-based-authorization-for-ai-agents-17657.md>)

Original publisher: [Read original article](<https://nirmata.com/2026/08/18/okta-cross-app-access-xaa-id-jag/>)

Author: Ritesh Patel

Published: 2026-08-19T00:24:40Z

Content type: article

Language: en

Sources: [Nirmata](<https://devfeed.tech/sources/nirmata.md>)

Topics: [cross-app-access](<https://devfeed.tech/topics/cross-app-access.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [okta](<https://devfeed.tech/topics/okta.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Model Context Protocol (MCP)](<https://devfeed.tech/topics/model-context-protocol-mcp.md>), [Large Language Model](<https://devfeed.tech/topics/llm.md>), [JSON Web Tokens](<https://devfeed.tech/topics/jwt.md>), [OAuth](<https://devfeed.tech/topics/oauth.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [authorization](<https://devfeed.tech/tags/authorization.md>), [cross-app-access](<https://devfeed.tech/tags/cross-app-access.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [jwt](<https://devfeed.tech/tags/jwt.md>), [llm](<https://devfeed.tech/tags/llm.md>), [mcp](<https://devfeed.tech/tags/mcp.md>), [mcp-server](<https://devfeed.tech/tags/mcp-server.md>), [oauth](<https://devfeed.tech/tags/oauth.md>), [okta](<https://devfeed.tech/tags/okta.md>), [standards](<https://devfeed.tech/tags/standards.md>)

### AI overview

The article explains how Nirmata AIControls supports Okta Cross App Access and the ID-JAG authorization profile for AI agents. It describes token exchanges performed on behalf of agents, administrator-controlled app-to-app access, policy checks, budgets, and audit records for delegated MCP and LLM calls.

### Source excerpt

AIControls now performs the ID-JAG token exchanges on your agents' behalf -- so agents need no protocol code -- and policy-checks, budgets, and attributes every delegated MCP and LLM call to the human it acts for. ID-JAG answers may this agent act for this user? AIControls answers what... The post Okta Cross App Access (XAA / ID-JAG) in Nirmata AIControls: standards-based authorization for AI agents first appeared on Nirmata.

## Meet the Sales Leader Who Leads From the Front -- and Won't Let You Settle for Less

DevFeed: [Meet the Sales Leader Who Leads From the Front -- and Won't Let You Settle for Less](<https://devfeed.tech/articles/meet-the-sales-leader-who-leads-from-the-front-and-won-t-let-you-settle-for-less-29761.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/meet-the-sales-leader-leading-from-the-front/>)

Author: amanda.erickson@goteleport.com (Amanda Erickson)

Published: 2026-04-15T00:00:00Z

Content type: article

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [okta](<https://devfeed.tech/topics/okta.md>)

Tags: [coaching](<https://devfeed.tech/tags/coaching.md>), [deals](<https://devfeed.tech/tags/deals.md>), [identity-management](<https://devfeed.tech/tags/identity-management.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [leadership](<https://devfeed.tech/tags/leadership.md>), [management](<https://devfeed.tech/tags/management.md>), [sales](<https://devfeed.tech/tags/sales.md>), [security](<https://devfeed.tech/tags/security.md>), [trust](<https://devfeed.tech/tags/trust.md>)

### AI overview

An interview with John Solazzo, Teleport's Senior Sales Director, about leading the company's mid-market sales organization through hands-on coaching, customer engagement, and deal leadership. Solazzo also explains why he joined Teleport and describes its infrastructure security approach, which uses identity and policy-based tools.

### Source excerpt

Meet John Solazzo, Teleport's Senior Sales Director leading mid-market sales from the front -- on calls, in deals, and coaching by example every single day.

## Mintlify for Enterprise

DevFeed: [Mintlify for Enterprise](<https://devfeed.tech/articles/mintlify-for-enterprise-31069.md>)

Original publisher: [Read original article](<https://www.mintlify.com/blog/mintlify-for-enterprise>)

Author: Hahnbee Lee

Published: 2026-02-11T00:00:00Z

Content type: release

Language: en

Sources: [Mintlify Blog](<https://devfeed.tech/sources/mintlify-blog.md>)

Topics: [Documentation](<https://devfeed.tech/topics/documentation.md>), [Access Control](<https://devfeed.tech/topics/access-control.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [saml](<https://devfeed.tech/topics/saml.md>), [Security](<https://devfeed.tech/topics/security.md>), [okta](<https://devfeed.tech/topics/okta.md>), [anthropic](<https://devfeed.tech/topics/anthropic.md>), [Microsoft](<https://devfeed.tech/topics/microsoft.md>), [coinbase](<https://devfeed.tech/topics/coinbase.md>)

Tags: [access-control](<https://devfeed.tech/tags/access-control.md>), [announcements](<https://devfeed.tech/tags/announcements.md>), [anthropic](<https://devfeed.tech/tags/anthropic.md>), [coinbase](<https://devfeed.tech/tags/coinbase.md>), [documentation](<https://devfeed.tech/tags/documentation.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [like](<https://devfeed.tech/tags/like.md>), [microsoft](<https://devfeed.tech/tags/microsoft.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

Mintlify introduces enterprise-focused features for documentation teams, including self-serve SSO through Okta and Microsoft Entra via SAML, role-based access control, viewer roles, and security workflow improvements. The article also describes how companies use Mintlify documentation for product adoption, support, revenue, and AI systems.

### Source excerpt

How companies like Anthropic, Coinbase, HubSpot, Fidelity, PayPal, and Microsoft use Mintlify to run documentation as core infrastructure in an AI-driven, revenue-critical world.

## Speedrun Incident Investigations Across GitHub, AWS, Okta, and More

DevFeed: [Speedrun Incident Investigations Across GitHub, AWS, Okta, and More](<https://devfeed.tech/articles/speedrun-incident-investigations-across-github-aws-okta-and-more-29858.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/speedrun-incident-investigations-github-aws-okta-cloud/>)

Author: jpitts@goteleport.com (Jack Pitts)

Published: 2025-09-05T00:00:00Z

Content type: tutorial

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [incident](<https://devfeed.tech/topics/incident.md>), [Security](<https://devfeed.tech/topics/security.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [GitHub](<https://devfeed.tech/topics/github.md>), [okta](<https://devfeed.tech/topics/okta.md>), [audit](<https://devfeed.tech/topics/audit.md>), [SIEM, Security, Observability](<https://devfeed.tech/topics/siem-security-observability.md>)

Tags: [api-keys](<https://devfeed.tech/tags/api-keys.md>), [audit](<https://devfeed.tech/tags/audit.md>), [aws](<https://devfeed.tech/tags/aws.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [cloud-infrastructure](<https://devfeed.tech/tags/cloud-infrastructure.md>), [github](<https://devfeed.tech/tags/github.md>), [incident](<https://devfeed.tech/tags/incident.md>), [logs](<https://devfeed.tech/tags/logs.md>), [okta](<https://devfeed.tech/tags/okta.md>), [security](<https://devfeed.tech/tags/security.md>), [visibility](<https://devfeed.tech/tags/visibility.md>)

### AI overview

This tutorial explains how security teams can investigate identity-related incidents across GitHub, AWS, Okta, and other systems by correlating activity and audit data. It describes the limits of fragmented logs, SIEMs, and CNAPPs, and introduces examples for tracing access pathways and incident scope.

### Source excerpt

Security teams spend hours stitching logs during investigations. Learn to investigate identity threats in minutes with full visibility across GitHub, AWS, and Okta.

## Blog: Using Falco to Create Custom Identity Detections

DevFeed: [Blog: Using Falco to Create Custom Identity Detections](<https://devfeed.tech/articles/blog-using-falco-to-create-custom-identity-detections-32500.md>)

Original publisher: [Read original article](<https://falco.org/blog/falco-okta-identity/>)

Published: 2023-11-28T00:00:00Z

Content type: article

Language: en

Sources: [Falco - Falco](<https://devfeed.tech/sources/falco-falco.md>), [Falco - The Falco blog](<https://devfeed.tech/sources/falco-the-falco-blog.md>)

Topics: [Falco](<https://devfeed.tech/topics/falco.md>), [okta](<https://devfeed.tech/topics/okta.md>), [Security](<https://devfeed.tech/topics/security.md>), [threat detection](<https://devfeed.tech/topics/threat-detection.md>), [audit](<https://devfeed.tech/topics/audit.md>), [password reset](<https://devfeed.tech/topics/password-reset.md>), [account takeover](<https://devfeed.tech/topics/account-takeover.md>), [Threat Research](<https://devfeed.tech/topics/threat-research.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [audit](<https://devfeed.tech/tags/audit.md>), [blog](<https://devfeed.tech/tags/blog.md>), [event-source](<https://devfeed.tech/tags/event-source.md>), [falco](<https://devfeed.tech/tags/falco.md>), [identity](<https://devfeed.tech/tags/identity.md>), [okta](<https://devfeed.tech/tags/okta.md>), [password-reset](<https://devfeed.tech/tags/password-reset.md>), [security](<https://devfeed.tech/tags/security.md>), [threat-detection](<https://devfeed.tech/tags/threat-detection.md>)

### AI overview

This blog post explains how the open-source Falco Okta plugin can support Identity Threat Detection and Response by analyzing Okta audit logs. It describes default rules, adaptable rule logic, and a custom rule example focused on password-reset activity and potential account takeover.

### Source excerpt

Identity Threat Detection & Response (ITDR) in the cloud is of paramount importance to limit access to sensitive data and maintain the integrity of cloud infrastructure. Leading cloud providers like AWS, Microsoft Azure, and Google Cloud have implemented robust Identity and Access Management (IAM) controls, as well as Multi-Factor Authentication (MFA) options, to ensure that users have the standardized access control limitations. However, as the saying goes, "Trust, but verify." Even with these layers of security, there's a growing concern about what happens when a rogue employee or an external adversary manages to compromise an identity provider. Recent months have witnessed a surge in attacks targeting popular identity providers like Okta, underscoring the critical need for timely and effective detection capabilities. In fact, (Crowdstrike's 2023 Threat Hunting) report had classified 62% of all interactive cyber intrusions as having involved some form of compromised identities. Without proper detection, incidents such as the attacks on organizations like Caesars and MGM might go unnoticed until it's too late. Fortunately, open source Falco offers a Dedicated plugin for the Okta identity platform, empowering security teams to respond swiftly and with the context required to take real action against potential threats. In this blog post, we will delve into how Falco fulfills the requirements for ITDR capabilities. We'll illustrate the significance of Falco's adaptable rule logic and provide readers with a real-world example of crafting custom rules derived directly from Okta audit logs. Understanding the rule logic The Falco Okta plugin comes with a set of valuable default rules for Okta logs, which are designed to assist you in enhancing the security of your Okta platform. A typical illustration of the importance of these rules lies in the process of initiating a password reset within the Okta platform. In practice, an insider threat might reset a password, opt not

## Teleport 13: New Features and Updates

DevFeed: [Teleport 13: New Features and Updates](<https://devfeed.tech/articles/teleport-13-29893.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/teleport-13/>)

Author: kenneth.dumez@goteleport.com (Kenneth DuMez)

Published: 2023-05-10T00:00:00Z

Content type: release

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [configuration](<https://devfeed.tech/topics/configuration.md>), [Load Balancing](<https://devfeed.tech/topics/load-balancing.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [okta](<https://devfeed.tech/topics/okta.md>), [opensearch](<https://devfeed.tech/topics/opensearch.md>), [TLS (Transport Layer Security)](<https://devfeed.tech/topics/tls.md>), [Web](<https://devfeed.tech/topics/web.md>)

Tags: [announcement](<https://devfeed.tech/tags/announcement.md>), [aws](<https://devfeed.tech/tags/aws.md>), [configuration](<https://devfeed.tech/tags/configuration.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [load-balancing](<https://devfeed.tech/tags/load-balancing.md>), [new-features](<https://devfeed.tech/tags/new-features.md>), [okta](<https://devfeed.tech/tags/okta.md>), [opensearch](<https://devfeed.tech/tags/opensearch.md>), [tls](<https://devfeed.tech/tags/tls.md>), [ui](<https://devfeed.tech/tags/ui.md>)

### AI overview

Teleport 13 introduces automatic agent updates with configurable maintenance windows, TLS routing through AWS application load balancers for Server Access and Kubernetes Access, Okta application and group imports, and AWS OpenSearch support for Database Access. Several features are marked as preview releases.

### Source excerpt

An overview of all of the new features added to Teleport 13. Automatic Updating, Light Theme and more!

## How to Configure SSO for Amazon RDS Authentication and Authorization

DevFeed: [How to Configure SSO for Amazon RDS Authentication and Authorization](<https://devfeed.tech/articles/how-to-configure-sso-for-amazon-rds-authentication-and-authorization-29880.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/sso-for-amazon-rds/>)

Author: info@goteleport.com (Janakiram MSV)

Published: 2022-05-13T00:00:00Z

Content type: tutorial

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [Amazon RDS](<https://devfeed.tech/topics/amazon-rds.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [okta](<https://devfeed.tech/topics/okta.md>), [saml](<https://devfeed.tech/topics/saml.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [PostgreSQL](<https://devfeed.tech/topics/postgresql.md>), [Amazon EC2](<https://devfeed.tech/topics/amazon-ec2.md>)

Tags: [amazon-rds](<https://devfeed.tech/tags/amazon-rds.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [authorization](<https://devfeed.tech/tags/authorization.md>), [aws](<https://devfeed.tech/tags/aws.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [okta](<https://devfeed.tech/tags/okta.md>), [policies](<https://devfeed.tech/tags/policies.md>), [postgresql](<https://devfeed.tech/tags/postgresql.md>), [saml](<https://devfeed.tech/tags/saml.md>), [security](<https://devfeed.tech/tags/security.md>), [sso](<https://devfeed.tech/tags/sso.md>), [tutorial](<https://devfeed.tech/tags/tutorial.md>)

### AI overview

A tutorial explains how to configure single sign-on for Amazon RDS using Okta, SAML, and Teleport. It shows how to map Okta groups to Teleport roles and use role-based access control to restrict access to specific databases, including a sensitive forecast database.

### Source excerpt

This post is a tutorial to set up single sign-on (SSO) for Amazon RDS access

## Tutorial: How to Configure SSO for AWS Resources with Okta and SAML

DevFeed: [Tutorial: How to Configure SSO for AWS Resources with Okta and SAML](<https://devfeed.tech/articles/tutorial-how-to-configure-sso-for-aws-resources-with-okta-and-saml-29694.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/how-to-setup-aws-sso-with-okta-saml/>)

Author: info@goteleport.com (Janakiram MSV)

Published: 2022-03-29T00:00:00Z

Content type: tutorial

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [okta](<https://devfeed.tech/topics/okta.md>), [saml](<https://devfeed.tech/topics/saml.md>), [Amazon EC2](<https://devfeed.tech/topics/amazon-ec2.md>), [ssh](<https://devfeed.tech/topics/ssh.md>), [VPC](<https://devfeed.tech/topics/vpc.md>)

Tags: [aws](<https://devfeed.tech/tags/aws.md>), [ec2](<https://devfeed.tech/tags/ec2.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [okta](<https://devfeed.tech/tags/okta.md>), [saml](<https://devfeed.tech/tags/saml.md>), [ssh](<https://devfeed.tech/tags/ssh.md>), [sso](<https://devfeed.tech/tags/sso.md>), [tutorial](<https://devfeed.tech/tags/tutorial.md>)

### AI overview

This tutorial explains how to configure single sign-on for AWS resources using Okta, SAML, and Teleport. It demonstrates fine-grained SSH access to EC2 instances by mapping Okta users and groups to infrastructure roles and access policies.

### Source excerpt

This post explains how to configure SSO for AWS Resources with Okta and SAML.

## Single sign-on user experience challenges and integration approaches

DevFeed: [Single sign-on user experience challenges and integration approaches](<https://devfeed.tech/articles/why-sso-sucks-and-the-future-of-sso-29969.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/why-sso-sucks/>)

Author: ben@goteleport.com (Ben Arent)

Published: 2022-03-11T00:00:00Z

Content type: article

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [User experience (UX)](<https://devfeed.tech/topics/ux.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [OpenID connect (OIDC)](<https://devfeed.tech/topics/oidc.md>), [saml](<https://devfeed.tech/topics/saml.md>), [okta](<https://devfeed.tech/topics/okta.md>), [Terraform](<https://devfeed.tech/topics/terraform.md>)

Tags: [authentication](<https://devfeed.tech/tags/authentication.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [oidc](<https://devfeed.tech/tags/oidc.md>), [okta](<https://devfeed.tech/tags/okta.md>), [saml](<https://devfeed.tech/tags/saml.md>), [sso](<https://devfeed.tech/tags/sso.md>), [terraform](<https://devfeed.tech/tags/terraform.md>), [ux](<https://devfeed.tech/tags/ux.md>)

### AI overview

This article examines user-experience problems with single sign-on, including repeated authentication prompts and redirect flows. It explains how application architectures and integrations using SAML or OIDC make a standardized sign-on experience difficult, and discusses identity-provider, access-control, and automation practices.

### Source excerpt

A deep dive into the UX of current single sign-on and an overview of possible solutions.

## Modern IT (information technology)

DevFeed: [Modern IT (information technology)](<https://devfeed.tech/articles/modern-it-information-technology-29765.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/modern-it-startup/>)

Author: info@goteleport.com (Travis Gary)

Published: 2021-10-13T00:00:00Z

Content type: opinion

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [information-technology](<https://devfeed.tech/topics/information-technology.md>), [Automation](<https://devfeed.tech/topics/automation.md>), [DevOps](<https://devfeed.tech/topics/devops.md>), [okta](<https://devfeed.tech/topics/okta.md>), [Terraform](<https://devfeed.tech/topics/terraform.md>)

Tags: [automation](<https://devfeed.tech/tags/automation.md>), [company](<https://devfeed.tech/tags/company.md>), [devops](<https://devfeed.tech/tags/devops.md>), [experience](<https://devfeed.tech/tags/experience.md>), [growth](<https://devfeed.tech/tags/growth.md>), [information-technology](<https://devfeed.tech/tags/information-technology.md>), [okta](<https://devfeed.tech/tags/okta.md>), [remote](<https://devfeed.tech/tags/remote.md>), [self-service](<https://devfeed.tech/tags/self-service.md>), [support](<https://devfeed.tech/tags/support.md>), [systems](<https://devfeed.tech/tags/systems.md>), [technology](<https://devfeed.tech/tags/technology.md>), [terraform](<https://devfeed.tech/tags/terraform.md>)

### AI overview

Travis shares Teleport's approach to running IT for a fast-growing global remote company. The article argues for automation, employee self-service, and DevOps-style IT operations to reduce support requests and preserve employee agility.

### Source excerpt

Running IT at a fast-growing company presents many challenges. Travis shares his experience managing the IT team at Teleport.

## How to secure your Okta directory

DevFeed: [How to secure your Okta directory](<https://devfeed.tech/articles/how-to-secure-your-okta-directory-29776.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/okta-terraform/>)

Author: info@goteleport.com (Travis Gary)

Published: 2021-08-23T00:00:00Z

Content type: tutorial

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [okta](<https://devfeed.tech/topics/okta.md>), [Security](<https://devfeed.tech/topics/security.md>), [Terraform](<https://devfeed.tech/topics/terraform.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [MFA](<https://devfeed.tech/topics/mfa.md>)

Tags: [authentication](<https://devfeed.tech/tags/authentication.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [infrastructure-as-code](<https://devfeed.tech/tags/infrastructure-as-code.md>), [least-privilege](<https://devfeed.tech/tags/least-privilege.md>), [mfa](<https://devfeed.tech/tags/mfa.md>), [okta](<https://devfeed.tech/tags/okta.md>), [security](<https://devfeed.tech/tags/security.md>), [terraform](<https://devfeed.tech/tags/terraform.md>)

### AI overview

A practical guide to hardening an Okta directory with Terraform. It presents security maturity levels covering strong MFA, permission-based groups, role- and attribute-based group rules, least-privilege administrator roles, and SIEM alerting for changes made outside Terraform.

### Source excerpt

The guide for Okta Directory security hardening using Terraform

## How to Achieve SOC2 Compliance for Teleport Cloud with Teleport On-Prem

DevFeed: [How to Achieve SOC2 Compliance for Teleport Cloud with Teleport On-Prem](<https://devfeed.tech/articles/how-to-achieve-soc2-compliance-for-teleport-cloud-with-teleport-on-prem-29911.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/teleport-cloud-soc2-compliance/>)

Author: info@goteleport.com (Travis Gary)

Published: 2021-08-10T00:00:00Z

Content type: tutorial

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [soc2](<https://devfeed.tech/topics/soc2.md>), [on-prem](<https://devfeed.tech/topics/on-prem.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [audit](<https://devfeed.tech/topics/audit.md>), [Security](<https://devfeed.tech/topics/security.md>), [ssh](<https://devfeed.tech/topics/ssh.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Databases](<https://devfeed.tech/topics/databases.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Terraform](<https://devfeed.tech/topics/terraform.md>), [okta](<https://devfeed.tech/topics/okta.md>), [web applications](<https://devfeed.tech/topics/web-applications.md>)

Tags: [applications](<https://devfeed.tech/tags/applications.md>), [audit](<https://devfeed.tech/tags/audit.md>), [availability](<https://devfeed.tech/tags/availability.md>), [aws](<https://devfeed.tech/tags/aws.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [databases](<https://devfeed.tech/tags/databases.md>), [developers](<https://devfeed.tech/tags/developers.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [identity](<https://devfeed.tech/tags/identity.md>), [incident](<https://devfeed.tech/tags/incident.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [integrations](<https://devfeed.tech/tags/integrations.md>), [jira](<https://devfeed.tech/tags/jira.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [okta](<https://devfeed.tech/tags/okta.md>), [on-prem](<https://devfeed.tech/tags/on-prem.md>), [pagerduty](<https://devfeed.tech/tags/pagerduty.md>), [platform](<https://devfeed.tech/tags/platform.md>), [soc2](<https://devfeed.tech/tags/soc2.md>)

### AI overview

This blog post explains how Teleport says it uses Teleport Cloud and Teleport On-Prem to support SOC2 compliance. It describes access controls, SSO integration, audit capabilities, approval workflows, Terraform-based change management, short-lived SSH certificates, and automated user lifecycle changes through Okta.

### Source excerpt

In this blog post we illustrate how we use Teleport to achieve SOC2 compliance at Teleport

## Authenticate with Firebase using Okta

DevFeed: [Authenticate with Firebase using Okta](<https://devfeed.tech/articles/authenticate-with-firebase-using-okta-16350.md>)

Original publisher: [Read original article](<https://firebase.blog/posts/2020/08/authenticate-with-firebase-using-okta>)

Author: Kevin Cheung

Published: 2020-08-04T00:00:00Z

Content type: tutorial

Language: en

Sources: [Firebase Blog](<https://devfeed.tech/sources/firebase-blog.md>)

Topics: [Firebase](<https://devfeed.tech/topics/firebase.md>), [okta](<https://devfeed.tech/topics/okta.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [Express](<https://devfeed.tech/topics/express.md>), [Node.js](<https://devfeed.tech/topics/node-js.md>), [Single-page application (SPA)](<https://devfeed.tech/topics/spa.md>), [Auth0](<https://devfeed.tech/topics/auth0.md>), [Entra ID](<https://devfeed.tech/topics/entra-id.md>)

Tags: [admin-sdk](<https://devfeed.tech/tags/admin-sdk.md>), [auth0](<https://devfeed.tech/tags/auth0.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [azure](<https://devfeed.tech/tags/azure.md>), [express](<https://devfeed.tech/tags/express.md>), [firebase](<https://devfeed.tech/tags/firebase.md>), [node-js](<https://devfeed.tech/tags/node-js.md>), [okta](<https://devfeed.tech/tags/okta.md>), [tutorials](<https://devfeed.tech/tags/tutorials.md>), [web-app](<https://devfeed.tech/tags/web-app.md>)

### AI overview

A tutorial showing how to integrate Okta identity services with Firebase Custom Authentication. It builds a Node.js and Express.js backend to exchange Okta access tokens for Firebase custom authentication tokens, plus a web frontend that uses those tokens to authenticate with Firebase.

### Source excerpt

News, tutorials, and updates from the Firebase team.

## Seven Practices to Prepare a Startup for SOC 2

DevFeed: [Seven Practices to Prepare a Startup for SOC 2](<https://devfeed.tech/articles/the-soc2-starting-seven-29174.md>)

Original publisher: [Read original article](<https://www.latacora.com/blog/2020/03/12/soc2-starting-seven/>)

Published: 2020-03-12T17:49:00Z

Content type: tutorial

Language: en

Sources: [Latacora](<https://devfeed.tech/sources/latacora.md>)

Topics: [soc2](<https://devfeed.tech/topics/soc2.md>), [Security](<https://devfeed.tech/topics/security.md>), [Terraform](<https://devfeed.tech/topics/terraform.md>), [CI/CD](<https://devfeed.tech/topics/cicd.md>), [Google Cloud Identity](<https://devfeed.tech/topics/google-cloud-identity.md>), [okta](<https://devfeed.tech/topics/okta.md>), [Logging](<https://devfeed.tech/topics/logging.md>), [Provisioning](<https://devfeed.tech/topics/provisioning.md>), [AWS CloudTrail](<https://devfeed.tech/topics/aws-cloudtrail.md>), [protected branches](<https://devfeed.tech/topics/protected-branches.md>), [GitHub](<https://devfeed.tech/topics/github.md>)

Tags: [aws](<https://devfeed.tech/tags/aws.md>), [ci-cd](<https://devfeed.tech/tags/ci-cd.md>), [cloudtrail](<https://devfeed.tech/tags/cloudtrail.md>), [deployment](<https://devfeed.tech/tags/deployment.md>), [github](<https://devfeed.tech/tags/github.md>), [logging](<https://devfeed.tech/tags/logging.md>), [okta](<https://devfeed.tech/tags/okta.md>), [patches](<https://devfeed.tech/tags/patches.md>), [protected-branches](<https://devfeed.tech/tags/protected-branches.md>), [security](<https://devfeed.tech/tags/security.md>), [soc2](<https://devfeed.tech/tags/soc2.md>), [terraform](<https://devfeed.tech/tags/terraform.md>)

### AI overview

The article recommends seven practices for startups that expect large-company clients to require a SOC 2 report: centralized identity with 2FA, pull-request controls and CI/CD, centralized logging, infrastructure provisioning with Terraform or a similar tool, AWS CloudTrail and AssumeRole, device management with encryption and current patches, and software vendor risk tracking. It also recommends documenting basic policies.

### Source excerpt

So, you plan to sell your startup's product to big companies one day. Congratu-dolences! Really, that's probably the only reason you should care about this article. If that's not you, go forth and live your life! We'll ask no more of your time. For the rest of you: Industry people talk about SOC2 a lot, and it's taken on a quasi-mystical status, not least because it's the product of the quasi-mystical accounting industry. But what it all boils down to is: eventually you'll run into big-company clients demanding a SOC2 report to close a sale. You know this and worry about it.