Currently users auth via LDAP. However auth will move to Okta. It’s my understanding that authenticating with Okta will make AEM create new user profiles. What is needed to ensure existing users retain their existing user groups and permissions once Okta is integrate? Do all the user group attributes along with user profile attributes need to be added to the Okta side?
I don’t have any experience with the application settings on the Adobe Experience Manager, but on the Okta side you can import the users and groups from LDAP.
Take a look at the following: Migrate users from an on-premises LDAP directory to Universal Directory