Pricing  Get Quote
 
 

How to enable SAML-based SSO for ADSelfService Plus using Okta?

Solution:

If your organization uses SAML-based identity provider (IdP) applications such as Okta, you can enable single sign-on (SSO) to ADSelfService Plus' web console.

Once SSO is enabled, whenever a user attempts to log on to ADSelfService Plus’ web console, the user will be redirected to Okta. Upon successful authentication, Okta will grant access to the ADSelfService Plus portal. If a user is already logged in to Okta and tries to access ADSelfService Plus, the user will be granted access automatically.

Prerequisite

If you do not find ADSelfService Plus in the list of supported applications in Okta, follow these steps to add it to the list.

Log in to your Okta account with admin credentials and navigate to ADSelfService Plus from the list of applications supported. Either download the Metadata in XML format, or get the required data by copying the Issuer URL/Entity ID, IdP Login URL, IdP Logout URL, and the X.509-certificate. 

Configuration steps in ADSelfService Plus

  1. Log in to the ADSelfService Plus web console with admin credentials.
  2. Navigate to the Admin tab → Customize → Logon Settings → Single Sign On.
  3. Check the box next to Enable SSO to enable single sign-on for ADSelfService Plus.
  4. Click the SAML Authentication radio button to enable SAML configuration for your users to log in to the ADSelfService Plus portal using their Okta credentials.
  5. Select Okta in the Select IdP drop-down list.

    okta-identity-provider-configuration

  6. There are two SAML Configuration Modes: Upload Metadata File and Manual Configuration.
    • Select Upload Metadata File if you have downloaded the metadata file.
      • Click Browse to upload the metadata file downloaded from Okta.

        sso-logon-settings

    • Select Manual Configuration to configure the URLs and certificates manually.
      • Enter the Issuer URL/Entity ID URL copied from Okta.
      • In the IdP Login URL, enter the Login URL copied from Okta.
      • In the IdP Logout URL, enter the Logout URL copied from Okta.

        okta-idp-saml-authentication-manual-configuration

      • In the space provided for X.509-Certificate, enter the public certificate key copied from Okta.
  7. Click Save.

Like this tip? Get the most out of ADSelfService Plus by checking out more tips and tricks here.

Request for Support

Need further assistance? Fill this form, and we'll contact you rightaway.

  • Name
  •  
  • Business Email *
  •  
  • Phone *
  •  
  • Problem Description *
  •  
  • Country
  •  
  • By clicking 'Submit' you agree to processing of personal data according to the Privacy Policy.
Highlights of ADSelfService Plus

Password self-service

Allow Active Directory users to self-service their password resets and account unlock tasks, freeing them from lengthy help desk calls.

One identity with single sign-on

Get seamless one-click access to 100+ cloud applications. With enterprise single sign-on, users can access all their cloud applications using their Active Directory credentials.

Password and account expiry notification

Intimate Active Directory users of their impending password and account expiry via email and SMS notifications.

Password synchronization

Synchronize Windows Active Directory user passwords and account changes across multiple systems automatically, including Microsoft 365, Google Workspace, IBM iSeries, and more.

Password policy enforcer

Strong passwords resist various hacking threats. Enforce Active Directory users to adhere to compliant passwords by displaying password complexity requirements.

Directory self-update and corporate directory search

Enable Active Directory users to update their latest information themselves. Quick search features help admins scout for information using search keys like contact numbers.

ADSelfService Plus trusted by

Embark on a journey towards identity security and Zero Trust