OIN

Okta Org2Org

Okta Org2Org

Overview

The Org2Org SAML integration is used to push and match users and groups from one Okta org to another. The integration supports Okta's IdP-initiated SSO and JIT (Just In Time) Provisioning features, in order to easily manage users in a hub and spoke model. The Org2Org application is specifically designed for a hub and spoke configuration, where users are authenticated through SAML or SWA from a spoke (source) Okta org into a hub (target) Okta org. If the intent is to use this application only for user provisioning and deprovisioning, the application can be added to the spoke org in a mode that hides it from end users.

Authenticate and provision users from a source org into another Okta org

Last updated: Aug. 13 2025

Functionality

Add this integration to enable authentication and provisioning capabilities.

Functionality

  • API
  • Entitlement Management
  • Event Hooks
  • Identity Security & Posture Management
  • Inbound Federation
  • Inline Hooks
  • Outbound Federation
  • Partial Universal Logout
  • RADIUS
  • Universal Logout
  • Workflow Templates
  • Workflows Connectors
  • SAML
  • SWA
  • WS-Federation
  • OIDC
  • SCIM

Provisioning

  • Create
  • Update
  • Attribute Sourcing
  • Deactivate
  • Sync Password
  • Group Push
  • Group Linking
  • Schema Discovery
  • Attribute Writeback