Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Original file line number Diff line number Diff line change
Expand Up @@ -9,10 +9,12 @@ meta:

The Okta Open Source Model Context Protocol (MCP) server securely connects AI agents and Large Language Models (LLMs) to an Okta org. This abstraction layer enables AI agents and LLMs to interact with Okta admin management APIs using natural language commands.

The Okta Open Source MCP Server translates natural language instructions into structured API calls between LLM clients and an Okta org using Okta's Python SDK v3.4.1. This approach reduces security risks and complexity when connecting autonomous AI agents to Identity and Access Management (IAM) systems. The architecture ensures that AI actions remain secure, properly scoped, and fully auditable.
The Okta Open Source MCP Server translates natural language instructions into structured API calls between LLM clients and an Okta org using Okta's Python SDK v3.4.1. This approach reduces security risks and complexity when connecting autonomous AI agents to IAM systems. The architecture ensures that AI actions remain secure, properly scoped, and fully auditable.

IT admins, developers, and security professionals use the Okta Open Source MCP Server to automate Okta admin tasks through AI-powered interfaces.

Okta offers two ways to deploy an MCP server: the Okta Open Source MCP Server and the Okta Managed MCP Server. See [Okta Open Source MCP Server overview](/docs/guides/okta-open-source-mcp-server/main/) to compare the two hosting options and choose the one that fits your environment.

## Benefits

The Okta Open Source MCP Server addresses security, automation, and integration requirements.
Expand Down
Original file line number Diff line number Diff line change
@@ -0,0 +1,9 @@
---
title: Okta Open Source MCP Server overview
meta:
- name: description
content: Learn about the Okta Open Source MCP Server, how it compares to the Okta Managed MCP Server, and how to choose the right deployment option.
layout: Guides
sections:
- main
---
Original file line number Diff line number Diff line change
@@ -0,0 +1,36 @@
---
title: Okta Open Source MCP Server overview
meta:
- name: description
content: Learn about the Okta Open Source MCP Server, how it compares to the Okta Managed MCP Server, and how to choose the right deployment option.
layout: Guides
---

The Model Context Protocol (MCP) connects AI agents and Large Language Models (LLMs) to your Okta org so you can manage it using natural language commands. Okta offers two ways to deploy an MCP server: the Okta Open Source MCP Server and the Okta Managed MCP Server.

## Okta Open Source MCP Server

Comment thread
sophiajose-okta marked this conversation as resolved.
The [Okta Open Source MCP Server](/docs/concepts/mcp-server/) is a self-hosted server that you download and run on your own computer or private cloud network. It's best if you want full control over the package environment or need to run isolated tests and sandboxes.

## Okta Managed MCP Server

The Okta Managed MCP Server is a cloud-hosted server where Okta hosts and manages the gateway on your behalf. Your chat client streams instructions over secure HTTPS, which removes the need for local software installation, hosting, and maintenance.

## Choose a deployment option

The following table compares the two hosting options:

| Feature | Okta Open Source MCP Server | Okta Managed MCP Server |
| --- | --- | --- |
| Where it runs | Your infrastructure (a computer, a company container, or a private cloud). | Okta cloud infrastructure. |
| Setup and operation | Install Python packages, clone repositories, configure tooling, and manage infrastructure (OS patches, updates, dependency management). | No installation required. Connect through an HTTPS endpoint. Okta manages infrastructure, updates, scaling, and security patches. |
| Transport protocol | Uses STDIO. | Uses a secure internet connection (HTTPS). |
| User authentication | Device Authorization code flow (interactive users). | OpenID Connect (OIDC) with Proof Key for Code Exchange (PKCE) for interactive users. |
| Service-to-service authentication | JWT private key (API Services for autonomous agents). | JWT private key (API Services for autonomous agents). |
| Cost model | You manage infrastructure, licensing, and operational costs. | Okta managed cloud service with predictable, consumption-based pricing. |
| Best for | Developers testing code in a sandbox or using a command-line interface. | Help Desk teams, IT admins, and automated workflows. |

## Next steps

* To deploy the self-hosted option, see [Install and initialize the Okta Open Source MCP Server](/docs/guides/mcp-server/main/).
* To deploy the cloud-hosted option, see Okta Managed MCP Server documentation.
Original file line number Diff line number Diff line change
Expand Up @@ -593,6 +593,7 @@ export const guides = [
},
{
title: "Okta Open Source MCP Server",
path: "/docs/guides/okta-open-source-mcp-server/main/",
subLinks: [
{
title: "Install and initialize",
Expand Down