# Getting Started

{% hint style="info" %}
If you haven’t already, you may want to watch available demo videos at the [Yansa Labs YouTube](https://www.youtube.com/@yansalabs) channel. Most examples shown in the videos are included with the app.
{% endhint %}

### Pre-Requisites

Prior to installing **Okta Orchestrator**, you must first install the free [**Okta Identity Cloud API Access**](https://store.servicenow.com/sn_appstore_store.do#!/store/application/b3307c6b0f137a0047b38ecce1050ea5) application from the ServiceNow Store.

#### Setup an Okta Connector

<figure><img src="https://1098786861-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F1sA7VHpQEOTNsE9pk1jN%2Fuploads%2FrQwb1R21Ng3jEEdRlXve%2F125.jpg?alt=media&#x26;token=de1e4984-03a2-454c-80fc-bb68e53bc563" alt=""><figcaption><p>Okta Connector</p></figcaption></figure>

1. Visit **Okta Identity Cloud API Access -> Setup & Configuration -> Okta Connectors** in the left nav. Click **New** to create a new Connector
2. Enter the URL for your 'Okta Instance' and an 'API Token' you retrieve from your Okta instance
3. Ensure 'Active' is enabled and, in most cases, ensure 'Default' is enabled
4. Ensure 'Auto Import Groups' is enabled and **Save** the record
5. Click the link at the bottom of the record to **Import Okta Groups Immediately**

#### Associate Existing ServiceNow User Accounts with Okta User Accounts

<figure><img src="https://1098786861-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F1sA7VHpQEOTNsE9pk1jN%2Fuploads%2FUCzrxs8lLOe494obAyZT%2F126.jpg?alt=media&#x26;token=7309a9c7-17aa-4042-a964-ba8e3b3c8034" alt="" width="375"><figcaption><p>Associate ServiceNow Users to Okta Users</p></figcaption></figure>

1. Visit **Okta Identity Cloud API Access -> Tools & Utilities -> Attempt to Associate Users to Okta** in the left nav
2. Ensure the appropriate 'Encoded Query' and 'Okta Connector' are selected. Click **Okay** to begin association

## Installation

First, install Okta Orchestrator on your ServiceNow instance via the **System Applications** application in your left nav. Visit **Okta Orchestrator** in your left nav and peruse the available modules. Be sure to enable annotations in your instance by clicking the **‘…’** icon in the top-right of any form. Every Okta Orchestrator form includes documentation to help you along.

## Roles

* **x\_yala\_okta\_cat.admin**: Necessary to configure Okta Orchestrator
* **x\_yala\_okta\_cat.read\_only**: Provides visibility into Okta Orchestrator data in a read-only capacity (Access Entities, Attestations, Logs, etc)
