20% of Part II — permission scoping, not just access.
4 tasks · this deck covers task 3 of 4
↑ Administrator Roles OverviewThis task combines two things you've already learned separately: standard user activation, and admin role assignment — done together, in the right order.
Activation mechanics themselves (individual vs. bulk, the activation email, staged vs. suspended/deactivated) were fully covered in User Management, Task 2. This task doesn't re-teach that — it's about making sure the role is correctly attached as part of that same workflow.
↳ Full deck: User Management, Task 2 (Activate Users)Since roles must be assigned before they take effect (Task 2), the practical order is: assign the role first, then activate the user — or confirm the role assignment is already in place if activating an existing pending admin account.
A user can be technically "active" in Okta without holding the intended admin role — activation and role assignment are two separate actions, not one combined step. Always verify the role assignment directly rather than assuming activation implies it.
Watch for this in your own sandbox run:
→ Activating a user and assuming their admin role is already correctly attached — check it explicitly, since these are separate steps.
Sources: help.okta.com — administrators-set-up-admins.htm (cross-referencing User Management Task 2)
Next: Task 4 →