Okta Administrator Hands-On Configuration Exam Study Guide (2024)

To learn how to prepare for your Okta Certification Exam, watch our videohere.

Introduction

Congratulations on beginning the process to prepare for your Okta Administrator certification.

This exam study guide is designed to help you prepare for the Okta Certified Administrator Hands-On Configuration Exam. It contains a detailed list of the topics covered on this exam, as well as a list of preparation resources.

Passing this exam or the Okta Certified Administrator exam is a requirement for becoming an Okta Certified Administrator. It is also a prerequisite for anyone seeking to become an Okta Certified Consultant. The Okta Administrator Hands-On Configuration exam is based on the Okta Identity Engine and includes both Discrete Option Multiple Choice (DOMC) questions and hands-on configuration tasks. The Okta Certified Administrator exam is based on the Okta Classic Engine and is comprised exclusively of DOMC questions.

How to use this study guide

At minimum, we highly recommend that you thoroughly review each topic listed within the Exam Subject Area section of this study guide. Make sure you understand each topic. If you are not familiar with a topic, research it by using one of the corresponding preparation resources or search the Okta Help Center or Okta Product Documentation Library. Many topics are best learned through hands-on experience with the Okta service.

What does it mean to be an Okta Certified Administrator?

Okta Certified Administrators are technically proficient at managing the Okta service. They have extensive knowledge about how Okta enables advanced User Lifecycle Management scenarios involving mobile devices, security policy frameworks, supported SSO options, and advanced directory integration for cloud and on-premises access. Administrators use the Okta Policy framework to control user access, are able to map identity attributes and data transformations using Universal Directory, and troubleshoot issues.

Who should take the Okta Administrator Exam?

Candidates for the Okta Certified Administrator certification must have taken and passed either the Okta Certified Professional Exam (Retired) or the Okta Professional Hands-On Configuration Exam. They should also meet the following requirements at minimum:

  • Two years of experience in a technical role, working in security and/or identity management
  • One year of on-the-job experience working with the Okta service
  • Successful completion of the Okta Essentials course or equivalent training

Although roles within different organizations may vary, candidates for the Okta Certified Administrator certification are generally involved in administering IT strategy in support of an Okta solution. Candidates for this certification may be Okta Administrators, implementation consultants, identity leaders, system administrators, technical project managers, or technical project owners.

About the Okta Administrator Hands-On Configuration Exam

Number and types of questions

This exam has two parts.

  • Part I: 35 Discrete Option Multiple Choice (DOMC) Questions
  • Part II: Four Performance-Based, Hands-on Use Cases

Time allotted

Part I: 45 minutes

Part II: 120 minutes

Each part is timed separately. Any time left over from one Part cannot be applied to the other Part.

Because this is a 2 hour and 45-minute exam, test takers should come fully prepared to sit through the entire exam. There is no break allowed during this exam.

Exam Fee

USD 250 (USD 100 for each subsequent retake)

Prerequisites

An active, unexpired Okta Professional Certification

Successful completion of the recommended training or self-study using the preparation resources listed in the Administrator Exam subject areas table at the end of this page

Part II Information

During Part II of your exam, you are allowed to access the Okta Help Center.

One or more configuration tasks in Part II will require the use of a personal email account. If you are taking the exam on a device that is locked down, you may have to use a work email address. Use of your personal or work email is limited to the configuration tasks that require it.

Exam Scheduling

Okta certification exams are administered and proctored by Examity®, a secure online proctoring service. Okta has partnered with Examity to protect the integrity of our certification exams. Online proctoring means that you can take Okta exams from almost any location at a time that is convenient for you, without requiring that you travel to a test center. Your Okta certification exam must be scheduled at least 24 hours in advance of the time you plan to sit for the test in order to avoid the additional fee associated with on-demand testing. You can schedule your exam through the Okta Certification Credential Manager.

Understanding the types of items included on this exam

Part I of this exam includes Discrete Option Multiple-Choice (DOMC) items. Part II contains performance-based, hands-on use cases.

Understanding the DOMC item type

Part I of this exam consists of 35 DOMC items. DOMC is a powerful measurement tool that produces reliable test scores. It does so by removing several “contaminants” that affect test outcomes but are unrelated to the knowledge and skills being tested. The DOMC item type levels the playing field, and more fairly measures your skills by improving:

  • Readability. Because you are required to read less text, the exam tends to take less time and places fewer demands on the slower reader or the non-native English speaker.
  • Fairness. When savvy test takers are unsure of an answer, they look for clues by comparing options or gleaning information from other items on an exam. DOMC removes this test-taking advantage and serves as a powerful method to assess your actual knowledge.
  • Security. Instead of displaying all options at the same time, options are randomly presented one at a time. For each option presented, you must make a YES or NO decision to indicate whether you think the option is correct. Answer options are presented in random order, and in most instances, you are NOT presented with all the available options associated with a DOMC item. Item exposure is limited by presenting only a subset of the available options to you. Limiting item exposure helps ensure the integrity of the exam.

Scoring of the DOMC Items

You can be assured that the DOMC item type is scored fairly and with precision.

  • If you are presented with a correct option and respond YES, then that response is scored as “correct". A DOMC item can be programmed to require one or more correct responses in order to be complete and to be considered answered correctly. Typically, however, only one correct response is required.
  • If you are presented with a correct option and respond NO, then that item is scored as “incorrect”.
  • If you are presented with an incorrect option and respond YES, then that item is scored as “incorrect”.
  • If you are presented with an incorrect option, and respond NO (technically a correct response), the item is not scored until additional options are presented and responded to.

Note: Even after you respond correctly or incorrectly to an item, additional correct or incorrect options might be presented but your responses to those options will not be scored at all. This is done to prevent you from guessing the correctness or incorrectness of a response.

The DOMC item format might require that you make some adjustments to your usual test-taking approaches. The reward of such effort is the confidence that those test takers who become certified are truly competent in the areas tested on the exam and will represent excellence in the field.

To learn more about DOMC items, visit https://domc.caveon.com/home. In addition, the Okta Administrator Practice and Premier Practice Exams will help you become accustomed to the new test format. We highly recommend that you become familiar with the format of this item type before taking any Okta certification exams.

Understanding the performance-based use cases on this exam

Part II of the exam contains information about Part II, the credentials needed to access the Okta orgs that are assigned at the beginning of the exam, and four use cases. The information, org credentials, and four use cases are accessible through tabs on the exam screen. Each use case consists of configuration tasks that test takers are asked to complete in their assigned Okta Identity Engine Preview Orgs. This exam allows test takers to demonstrate their skill with the Okta service in a natural way that mimics how administrators use Okta on the job.

We recommend that test takers complete the use cases and tasks in order because completing some tasks depend on the successful completion of previous tasks.

Scoring of Performance-Based Use Cases

Uses cases are graded upon the submission of the exam or immediately at the end of the 120-minute time clock allotted for this part of the exam. A scoring rubric is used to grade this exam. The grading process is automated using scripts to query the logs of the Okta tenants, as well as APIs to validate specific configurations. As it is a program policy, we provide a final Pass or Fail decision only. We do not provide grades, nor do we make public the minimum amount of points an exam taker needs to pass our exams.

Submitting the Exam

At the bottom of the page is a blue button labeled "Submit Exam". After you have completed all of the use cases and you are ready to submit your exam, click the Submit Exam button. When you do, you will be presented with a confirmation popup. Clicking the YES, SUBMIT NOW button will end your exam and submit it for grading.

Okta Administrator Hands-On Configuration Exam Study Guide (1)

After your exam is submitted and scored, a performance report will be displayed on the screen. The report includes a provisional exam result and information about your performance by exam section in Part I and Use Case in Part II.

All exams go through an audit process that can take up to 3 business days. The final exam result can be communicated before the 3 business day period, but in some cases, it may take the full 3 business days.

Preparing for the Okta Certified Administrator Hands-on Configuration Exam

A combination of Okta instructor-led training courses, self-paced learning, self-study, and on-the-job experience will prepare you to take this exam. In addition to this study guide, each certification exam has an associated standard practice exam and premier practice exam (available at cost). These resources and Okta-authorized training courses are the only approved resources for Okta exam preparation.

Exam dumps and other resources are prohibited from our list of approved resources. Using these resources to prepare for your exam can lead to invalidation of your exam scores, revoking your certification, and testing bans from our program. If you are ever in doubt about approved materials for Okta exam preparation, you can reach out to our team at certification@okta.com.

Training

Okta Education Services offers a range of classes and training materials to help you prepare for this certification exam. Although attending a training class does not guarantee success on an Okta certification exam, we strongly recommend that you take the Okta Essentials Curriculum in preparation for this exam. You can learn more about the Okta Essentials course here:https://www.okta.com/services/training/

Enter “Okta Essentials” in the Search field to narrow your search. In Okta Essentials, participants learn how to:

  • Integrate Okta into your organization for easy user access to applications and data.
  • Identify the features and functions of Okta to maximize the value of your Okta investment.
  • Create and configure user accounts within Okta for data access and administration.
  • Integrate external directories to provide secure application access for all employees.
  • Create and manage groups for efficient user and application association and provisioning.
  • Configure applications for secure employee access to corporate data.
  • Configure controls, such as password policies and multi-factor authentication, for increased data security.
  • Customize Okta to match your company brand.
  • Work through various errors to learn troubleshooting techniques.
  • Monitor application usage and analyze authentication errors to quickly resolve employee or access issues.

Visit https://www.okta.com/services/training/ for the complete course catalog.

Other resources

  • The Okta Help Center contains a knowledge library of articles and videos, some of which are pertinent to topics covered on this exam.

  • The Okta Content Library offers searchable white papers with a rich body of information to explore before your exam.

  • Join the Okta Community to review questions, discussions, ideas, and blogs for additional exam preparation.

Administrator Exam subject areas

Part I subject areas

The following table lists the topics that are covered in Part I of this exam. These topics are grouped into topic areas, and topic areas roll up into domains/exam sections. Use this list as an outline to guide your study and validate your readiness for Part I of this exam.

Exam Section

Percentage of Exam Related to Section

Identity and Access Management

37%

Active Directory Integration

Enable and manage delegated authentication with AD and LDAP using Okta agents

Preparation resources:

  • Add and update users with Active Directory Just-In-Time provisioning
  • Configure the Password authenticator
  • Enable delegated authentication

Demonstrate understanding of Okta AD and LDAP agent architecture and best practices

Preparation resources:

  • Install multiple Okta Active Directory agents
  • Manage your Active Directory integration
  • Configure DMZ server ports for Active Directory integrations

Manage Okta agent service account and permissions need for agents and in directories for password reset

Preparation resources:

  • About Okta service account permissions

Demonstrate knowledge of the requirements for Okta/AD password policies

Preparation resources:

  • Configure the Password authenticator

Demonstrate knowledge of user activation options when using AD as a source

Preparation resources:

  • Manage your Active Directory integration
  • Configure Active Directory import and account settings
Demonstrate an understanding of the difference between AD groups and Okta groups

Preparation resources:

  • Import groups from Active Directory
  • Manage Active Directory users and groups
Single Sign-On (SSO) Federation

Demonstrate knowledge of how to configure Okta as a service provider

Preparation resources:

  • Identity Providers

Demonstrate understanding of the SAML assertion

Preparation resources:

  • SAML app integrations
  • CASB configuration guide

Demonstrate knowledge of the configuration of OIN apps

Preparation resources:

  • App integrations
  • Reveal the password of an app integration
  • Configure Self Service approval workflow

Demonstrate knowledge of Org2Org use cases

Preparation resources:

  • Integrate Okta Org2Org with Okta
  • Okta Org2Org
  • Okta Org2Org Integration Detail
Desktop SSO deployment Federation

Demonstrate knowledge of how to deploy Agentless Desktop SSO

Preparation resources:

  • Active Directory Desktop Single Sign-on
Architecture

Demonstrate knowledge of how to configure RADIUS applications

Preparation resources:

  • RADIUS server best practices

Demonstrate knowledge of high availability requirements on advanced agents (e.g., RADIUS, MFA, OPP)

Preparation resources:

  • RADIUS server best practices
  • Synchronize passwords from Okta to Active Directory

User Lifecycle Management

29%

Profile sourcing and write-back concepts

Demonstrate knowledge of HR as a source including the benefits of groups and group rules when using an external source

Preparation resources:

  • Manage profiles
  • About group rules
  • Okta Expression Language overview

Demonstrate knowledge of when profile sourcing is used

Preparation resources:

  • About attribute-level sourcing
  • Profile Sourcing
  • Manage profile and attribute sourcing

Demonstrate knowledge of the value of writing data back to directories and apps from Okta

Preparation resources:

  • Manage profile and attribute sourcing
  • Manage Group Push

Demonstrate ability to work with multiple profile sources

Preparation resources:

  • About profile sourcing
  • About attribute-level sourcing

Demonstrate knowledge of the requirements of Okta lifecycle management and the ability to write to applications

Preparation resources:

  • Provision applications
  • Add and update users with Active Directory Just-In-Time provisioning

Demonstrate understanding of Okta Workflows for advanced lifecycle management use cases

Preparation resources:

  • Okta Workflows for Lifecycle Management
  • Okta Workflows
Provisioning

Demonstrate knowledge of the different ways that Okta can perform lifecycle management against Apps (e.g., APIs, SCIM, SAML JIT, password sync, Org2Org)

Preparation resources:

  • Integrate Okta Org2Org with Okta
  • How to Perform Provisioning Within Okta

Demonstrate knowledge of the typical flow of user registration/onboarding, updates, and deprovisioning.

Preparation resources:

  • Manage profile and attribute sourcing
  • About user account status
  • Provision applications

Demonstrate knowledge of how users and groups are processes during full and incremental imports

Preparation resources:

  • Import users
  • Directory integrations
Demonstrate knowledge of how Group Push can push Okta groups to provisioning-enabled third-party apps

Preparation resources:

  • About Group Push
  • Configure Group Linking

Security

20%

Okta Security Policy and Enforcement Framework

Manage authenticators and profiles

Preparation resources:

  • Multifactor Authentication
  • Configure the Okta Verify authenticator

Configure global session policies

Preparation resources:

  • Global session policies
  • Use multifactor authentication with the LDAP Interface

Demonstrate knowledge of authenticators, authentication methods, AAL (authentication assurance level), and end-user context to configure app-level policies

Preparation resources:

  • Multifactor authentication
  • Behavior Detection and evaluation

Demonstrate knowledge of device concepts including device context, device binding, registered vs. managed devices, and EDR signals

Preparation resources:

  • Add an authentication policy rule
  • Device registration

Demonstrate understanding of adaptive MFA policies

Preparation resources:

  • Global session policies
  • Behavior Detection and evaluation

Demonstrate knowledge of authorization servers

Preparation resources:

  • Create an Authorization Server
  • API Access Management
Demonstrate understanding of network zones, dynamic zones, IP zones, and blocklist zones

Preparation resources:

  • Network Zones
  • About dynamic zones

Monitoring and Troubleshooting

9%

Logging and Reporting

Demonstrate understanding of Okta logging

Preparation resources:

  • System Log
  • Useful System Log Queries

Demonstrate ability to filter the Okta syslog for events

Preparation resources:

  • System Log

Demonstrate ability to interpret Okta log files

Preparation resources:

  • Manage your LDAP integration
  • Okta Active Directory agent variable definitions
  • Troubleshoot the MFA for Windows Credential Provider

API Functions

6%

Token Management

Demonstrate knowledge of how to create API tokens with the correct permissions

Preparation resources:

  • API token management
  • API Access Management
API Extended Functions

Demonstrate knowledge of the importance of API rate limiting

Preparation resources:

  • Burst rate limits
  • Rate limits overview

Part II subject areas

The following table lists the use cases and tasks that are assessed in this exam. Information about each task in the exam is provided in the reference links.

Use Case
Percentage of Exam Related to Use Case

User Management

26%

Configuration tasks:

  • Import users from a csv file
  • Activate users
  • Create a custom user type and assign users to it
  • Add a custom attribute to a user type
  • Assign users to a group by rule

Preparation resources:

  • Import users from a CSV file
  • Activate user accounts
  • About custom user types in Universal Directory
  • Create group rules

Application Setup

31%

Configuration tasks:

  • Add a SAML 2.0 app integration
  • Map Okta attributes to application attributes
  • Create and map a custom attribute

Preparation resources:

  • Create SAML app integrations using AIW
  • Map Okta attributes to app attributes in the Profile Editor
  • Modify attributes with expressions

Administrator Roles

20%

Configuration tasks:

  • Create a custom admin role
  • Assign users to the admin role
  • Activate users with correct admin role
  • Create an API token

Preparation resources:

  • Use custom admin roles
  • Set up administrators
  • API token management

Security Enforcement

23%

Configuration tasks:

  • Set up an authenticator
  • Set up an MFA enrollment policy
  • Modify the default global sessions policy
  • Create an authentication policy for multifactor authentication
  • Test the authentication policy

Preparation resources:

  • Multifactor Authentication
  • About MFA enrollment policies and rules
  • Global session policies
  • Authentication policies

Okta Certified Administrator Practice Exams

Know what to expect on the day of the exam. Take the Okta Administrator Hands-On Configuration Practice Exam to familiarize yourself with the format of the DOMC item type. Click the button below to check it out.

Okta Administrator Hands-On Configuration Standard Practice Exam

Take the Okta Administrator Hands-On Configuration Premier Practice Exam to evaluate your readiness for the Okta Certified Administrator Hands-On Configuration Exam. This Premier Practice Exam measures many of the same topic areas and configuration tasks that are measured in the Okta Certified Administrator Hands-On Configuration Exam. Click the button below to check it out.

During the exam, one or more configuration tasks will require the use of a personal email account. If you are taking the exam on a device that is locked down, you may have to use a work email address. Use of your personal or work email is limited to the configuration tasks that require it.

Okta Administrator Hands-On Configuration Premier Practice Exam

Subject matter experts for the Okta Certified Administrator Hands-On Configuration Exam

Okta certification exams are designed and built by subject matter experts who have extensive real world-experiences implementing and administering the Okta service.

Here is the list of subject matter experts who made significant contributions in designing and building this exam:

Pratik Bhatt

Jordan Bowman

Andrew Candella

Chul Choi

Michael DiFilippo

Jim Doherty

Mohammad Ghaffar

Brandon Hunt

Jonathan Jackson

Iris Li

Bill MacAusland

Alka Maurya

Justin Moore

Arvindkumar Thakor

John Alexander Vasquez

Christian Wimpelmann

Simon Wu

Okta Administrator Hands-On Configuration Exam Study Guide (2024)
Top Articles
Single Women Seeking Men in Jacksonville, FL
Florida Backpage Alternative | Florida Back Pages US craigslist personals cityxguide bedpage alternative
Blorg Body Pillow
Fat People Falling Gif
9192464227
Cumberland Maryland Craigslist
2022 Apple Trade P36
Clafi Arab
Swimgs Yung Wong Travels Sophie Koch Hits 3 Tabs Winnie The Pooh Halloween Bob The Builder Christmas Springs Cow Dog Pig Hollywood Studios Beach House Flying Fun Hot Air Balloons, Riding Lessons And Bikes Pack Both Up Away The Alpha Baa Baa Twinkle
Erin Kate Dolan Twitter
Los Angeles Craigs List
Belle Delphine Boobs
National Weather Service Denver Co Forecast
Epro Warrant Search
The Exorcist: Believer (2023) Showtimes
Vanessawest.tripod.com Bundy
Fort Mccoy Fire Map
Pecos Valley Sunland Park Menu
Homeaccess.stopandshop
Dulce
If you have a Keurig, then try these hot cocoa options
Greenville Sc Greyhound
Caring Hearts For Canines Aberdeen Nc
Haunted Mansion Showtimes Near Epic Theatres Of West Volusia
European Wax Center Toms River Reviews
Hdmovie2 Sbs
Ullu Coupon Code
Stephanie Bowe Downey Ca
Gesichtspflege & Gesichtscreme
Jail Roster Independence Ks
Airg Com Chat
Till The End Of The Moon Ep 13 Eng Sub
'Conan Exiles' 3.0 Guide: How To Unlock Spells And Sorcery
Leland Nc Craigslist
Wbli Playlist
Edict Of Force Poe
The Blackening Showtimes Near Regal Edwards Santa Maria & Rpx
Bismarck Mandan Mugshots
Nearest Ups Office To Me
What Does Code 898 Mean On Irs Transcript
Empires And Puzzles Dark Chest
Directions To The Closest Auto Parts Store
Postgraduate | Student Recruitment
Pa Legion Baseball
About Us
Dyi Urban Dictionary
Legs Gifs
Ics 400 Test Answers 2022
Nfl Espn Expert Picks 2023
Vrca File Converter
Inloggen bij AH Sam - E-Overheid
Haunted Mansion Showtimes Near The Grand 14 - Ambassador
Latest Posts
Article information

Author: Sen. Ignacio Ratke

Last Updated:

Views: 6031

Rating: 4.6 / 5 (76 voted)

Reviews: 83% of readers found this page helpful

Author information

Name: Sen. Ignacio Ratke

Birthday: 1999-05-27

Address: Apt. 171 8116 Bailey Via, Roberthaven, GA 58289

Phone: +2585395768220

Job: Lead Liaison

Hobby: Lockpicking, LARPing, Lego building, Lapidary, Macrame, Book restoration, Bodybuilding

Introduction: My name is Sen. Ignacio Ratke, I am a adventurous, zealous, outstanding, agreeable, precious, excited, gifted person who loves writing and wants to share my knowledge and understanding with you.