Loading market data...

Claude Adds Enterprise-Managed Authorization for MCP Connectors, Starting with Okta

Claude Adds Enterprise-Managed Authorization for MCP Connectors, Starting with Okta

Anthropic has rolled out enterprise-managed authorization for MCP connectors in its Claude platform, promising to simplify setup for organizations. The integration kicks off with Okta, the identity management giant, as the first supported provider.

Streamlining the MCP connector setup

Managing connections between Claude and external data sources has typically required manual configuration. The new authorization layer automates that process. Administrators can now set policies that control which connectors employees can use and how those connectors authenticate—without needing to handle credentials or tokens themselves.

The move targets companies that have been hesitant to deploy AI assistants broadly because of security overhead. By leveraging Okta's single sign-on and lifecycle management, organizations can tie connector access directly to existing identity systems. An employee who leaves the company, for example, loses access to the connector automatically when Okta deactivates their account.

Why Okta first

Okta controls a large share of the enterprise identity market, making it a natural starting point. The integration covers Okta's core SSO and user provisioning APIs, so administrators don't need to build custom middleware. Claude reads roles and group memberships from Okta to decide who can invoke which MCP connector.

The authorization system itself is part of Claude's enterprise tier, not the free or Pro plans. That means the feature is aimed squarely at IT departments managing hundreds or thousands of users.

What changes for IT teams

Before this release, setting up a connector meant generating an API key, storing it somewhere safe, and distributing it manually to each user. That approach doesn't scale. The new system replaces that with a configuration file that an admin uploads to Claude once. From there, Okta handles the rest.

Audit logs are another addition. Every connector call now records which user made it and which Okta session authenticated the request. That gives compliance teams a trail without extra tooling.

Anthropic hasn't said whether other identity providers will be added. The company's documentation notes that the Okta integration is the first step, but no timeline is given for additional platforms like Azure AD or Ping Identity.

The feature is live now for enterprise customers. Existing Okta users can enable it through the Claude admin console.