logo

ZTCA Configuration: Restrict Okta access to trusted IPs using native controls and Entra Conditional Access

ID: 5911e78d-152f-5048-acac-14f8b6395f9f

STIX ID: report--5911e78d-152f-5048-acac-14f8b6395f9f

Feed Name: ThreatLocker Blog

Date Published: 2026-06-15

Date Updated: 2026-06-15

...
...

This guide explains how to restrict Okta access by IP address, covering two main scenarios: Part A for environments where Okta is the primary identity provider (use Okta Network Zones, Global Session Policy, Admin Console and App Sign-On policies) and Part B for environments where Microsoft Entra ID is the primary IdP and Okta is an External Authentication Method (use Entra Named Locations and Conditional Access). It includes detailed, step-by-step configuration steps, prerequisites, testing guidance, FAQs, and recommendations such as maintaining a break-glass account and validating policies in report-only mode.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.