Skip to main content

Workflow Template: Just-in-Time (JIT) access to Okta SSO Applications by Slack

Slack mention of "JIT-Access" allowing users to ask for a temporary access to applications via Okta SSO, with an approval flow via Slack

Updated over a week ago

The "Just-in-Time (JIT) Access to Okta SSO Applications by Slack" workflow template streamlines temporary access requests to applications via Okta SSO, initiated through a Slack command. This workflow enhances identity and access management by allowing users to request application access for a specified duration, subject to approval from designated approvers in a Slack channel. Once approved, access is granted and automatically revoked after the specified time, ensuring security and compliance.

Trigger

Slack

Optional Triggers

["Microsoft Teams"]

Use Cases

Identity and Access Management

Workflow Breakdown

  1. Receive a Slack command triggering a temporary access request

  2. Find JIT applications the user does not already have access to and present them

  3. Ask the user how long the access request is required

  4. Send an approval request to a Slack channel of approvers with request details

  5. If access is approved, associate application with user in Okta and notify the user

  6. Wait until the time has elapsed and remove access to application

Vendors

Slack, Utils, Okta

Workflow Output

Success/Failure via Slack notifications to the user

Tips

  • Set the list of SSO enabled applications and integration names in the first workflow variable step

  • Pick a Slack command to use, this example uses "JIT-Access" to call the workflow from Slack

Did this answer your question?