How to configure SAML authentication settings in Central Server for Okta SSO?

Description

This document will walk you through the steps required to configure SAML Authentication settings in Central Server on-premises for Okta. Refer to this site if you are looking to integrate Central Server cloud with Okta SSO.

Installation Steps

  1. Login to Okta. Click on Admin tab. Navigate to Applications.
     
    • Login to Okta. Click on Admin tab.
  2. Click on Create App Integration.
     
    •  Okta Click on Create App Integration
  3. Choose SAML 2.0 and click on Next.
     
    • Okta-Choose SAML 2.0 and click on Next
  4. Enter the Service Provider's name, in App name, that is, Central Server. Click on Next.
     
    • Okta-Service Provider's name, in App name,
  5. In Central Server, navigate to Admin tab, select SAML Authentication. Choose Configuration by downloading certificate. Copy Entity ID and Assertion Consumer URL.
     
    • central server navigate to Admin tab, select SAML Authentication.
  6. In Okta, paste the Assertion Consumer URL against Single sign on URL. Paste Entity ID against Audience URI (SP Entity ID).
     
    • In Okta, paste the Assertion Consumer URL against Single sign on URL
  7. Click on Next.
     
    • Okta click on next
  8. Choose - I'm a software vendor. I'd like to integrate my app with Okta. Click on Finish 
     
    • Choose - I'm a software vendor. I'd like to integrate my app with Okta.
  9. Navigate to Assignments tab.
     
    • Okta Navigate to Assignments tab. Select Assign
  10. Select Assign. You can choose to Assign to People or Assign to Groups
     
    • Okta Navigate to Assignments tab. Select Assign
  11. Choose user or group and click on Assign. You can choose to Assign to People or Assign to Groups. Click on Done.
     
    • Okta Choose user or group and click on Assign. You can choose to Assign to People or Assign to Groups
  12. Provide Username that matches with the admin > Provide user administration page details or mail address that matches with admin > User administration page. Click on Save and Go Back.
     

    • Okta Assign Central Server user to Okta for login

    Note: Domain users need to provide their details in the following format - domain\username.

    • Edit user assignment in Okta
    • Central User Page to view emailid of user
  13. Click on Done.
     
    • Okta Click on Done
  14. Navigate to the Sign On tab.
     
    • Okta Navigate to the Sign On tab
  15. Click View IdP metadata. Download Identity Provider metadata.
     
    • Okta page click Veiw IDP metadata to download IDP metadata
  16. In SAML Authentication settings of Central Server,
    Select IdP as Others.
    Enter IdP name as Okta.
    Select Username as Name ID or select Username as Mail ID w.r.t. to provided data on Step 12.
     

    • SAML Authentication page choose nameid=emailid

    Choose configuration by uploading IdP metadata. Browse and upload the metadata file. Click on Save.
     

    • SAML Authentication settings page for central server
  17. In Central Server's login page, Choose the new option - Login with Okta.
     
    • central server login page login with Okta
  18. Enter the credentials to login.
     
    • okta login page

Trusted by