Skip to main content

Cannot reset passwords in Okta for imported AD users

If password resets are not working in Okta for users imported from AD, check the following:

AD Agent connectivity β€” Confirm the Okta AD Agent is online and communicating with Okta. In the Okta Admin Console, navigate to Directory β†’ Directory Integrations and check the Agents tab.

AD Agent write permissions β€” Make sure the Okta AD Agent has Write permissions by confirming the Domain Admin role is assigned to the Windows service account ("OktaService") created during the integration process.

Conditional Access Policy β€” Confirm the Windows service account ("OktaService") is assigned a Conditional Access Policy that allows MFA bypass when the login attempt originates from one of Okta's IP addresses.


Still having trouble? Create a support ticket and our team will be happy to help.

Did this answer your question?