Okta Certified Administrator - Okta-Certified-Administrator Exam Practice Test

In an agentless DSSO (Desktop Single Sign-on) scenario Okta is the one decrypting the Kerberos ticket, finds then the user name, authenticates the user and passes back a session to the browser.
Solution: The statement is valid, but Okta is not the one doing decryption - the browser is doing that
Correct Answer: A
Which is a / are best-practice(s) in a SAML 2.0 situation?
Solution: To not link your admin user from the SP via SAML with a user from Okta, if the app (SP) does not provide a SAML bypass URL
Correct Answer: B
In order for SAML to work, there is a need of an IDP and an SP and we know that already, but why is it so? Because:
Solution: An SP sends SAML assertions, while the IDP receives and validates them
Correct Answer: A
When does Okta bring LDAP groups into Okta?
Solution: Only during LDAP JIT
Correct Answer: A
When using Okta Expression Language, which variable type results out of this Okta Expression? isMemberOfGroup("groupId") Solution: Graph
Correct Answer: A
On a Windows machine, which is the right behavior if you try to sign into your Okta org and agentless DSSO is properly configured for it?
Solution: You will be automatically redirected to The Okta Sign In page for your organization, where you need to fill in with your AD credentials
Correct Answer: A
Okta AD Agents can be successfully and completely configured by:
Solution: Super administrators
Correct Answer: B
If you want to remove an attribute's value in Okta, for example a value coming from AD that is not useful in any way, you have to:
Solution: Simply delete the attribute from the Okta Admin Panel GUI
Correct Answer: A
Which port and which of the: 'http' or SSL enabled connections does Okta recommend?
Solution: Port 80 and SSL enabled connections
Correct Answer: A
0
0
0
0