Skip to main content

How to Configure Security Assertion Markup Language (SAML) - Okta IDP Profile in the Tenant Admin Portal

This document provides step-by-step instructions to configure Security Assertion Markup Language (SAML) - Okta IDP Profile in the Tenant Admin Portal.

Introduction

The SAML–Okta Identity Provider (IdP) Profile enables secure authentication between Okta and the Oloid Tenant Admin Portal. Configuring SAML allows users to sign in to Oloid applications using their Okta credentials.

Prerequisites

Steps to Configure SAML-Okta IDP Profile

  1. Log in to the Oloid Tenant Admin Portal.

  2. On the Applications page, click Auth Policies > Identity Provider.

    The Identity Provider Profiles page is displayed.

  3. Click preferred SAML-IDP application.

    The IDP details page is displayed.

  4. Do the following:

    The IDP Profile is configured successfully.

Configure Details tab

The Details tab is used to view and manage the basic information for the Microsoft Entra ID identity provider configured in the Tenant Admin Portal.

To configure the Details tab, do the following:

  1. Edit the IDP Name (if required).

  2. Enter Description (optional).

  3. Do one of the following:

    1. Select the required WebKey application from the Select WebKey Application drop-down list.

      (OR)

    2. Click Make Default.

      Note: The Make Default button is enabled only when more than one IDP is added in the Tenant Admin Portal.

      The Set this as Default IDP pop-up box is displayed, do the following.

      • Select the Webkey Application from the drop-down.

      • Click Set as Default.

        Note: If another IDP is currently set as default, it will be replaced upon confirmation.

        • To make IDP as default, click Make Default. The confirmation pop-up box is displayed.

        • Click Set as Default to designate the preferred IDP as default.

      The WebKey application is linked to the IDP.

  4. Click Save.

    The Linking IDP top Application pop-up box is displayed.

  5. Click Confirm Action.

    Details tab is configured successfully.

Configure Metadata Tab

The Metadata tab is used to provide the required information to configure SAML settings and enable SAML-based authentication between the identity provider and the Tenant Admin Portal.

  1. Click Oloid Metadata tab.

    The Oloid Metadata tab is displayed.

  2. Click Visit help page for the document to configure Okta settings for SSO login.

  3. Do the following:

    1. Download Certificate: Download the certificate and upload it to the IdP Signature Certificate field.

    2. Sign-On URL: Copy the Sign-on URL and enter it in the IdP Issuer URL field.

    3. Entity ID: Copy the Entity ID and enter it in the Sign-on URL field.

      Note: You can find the IdP Signature Certificate, IdP Issuer URL and Sign-on URL fields on the SAML protocol section on SAML in OKTA Admin Console. For more details, click here.

Configure IDP Settings Tab

The IDP Settings tab is used to configure and upload the required SAML details to enable authentication between the identity provider and Tenant Admin Portal.

To configure the IDP settings tab, do the following:

  1. Click the IDP Settings tab.

    The IDP Setting tab is displayed.

  2. Do one of the following to configure the IDP Settings tab.

    1. Upload Metadata file.

      OR

    2. Enter Entity ID.

    3. Enter ACS URL.

      Note: You can find the Metadata file, Entity ID and ACS URL on the SAML application details page. For details, click here.

    4. Select Name ID Format from the drop-down.

      Note: By default, Email Address is selected.

    5. Select SAML Subject from the drop-down.

      Note: By default, Email is selected.

    6. Enter Home URL: Enter the URL of the home page.

    7. Enter Home Button Label: Enter the text displayed on the Home button.

    8. Click Save.

    IDP settings tab is configured successfully.

Configure Claims Tab (Optional)

The Claims tab is used to configure custom claims that pass user attributes from Oloid to the OIDC provider.

Do the following:

Add Additional Claims

Custom Claims allow the admin to map Oloid user attributes to OIDC attributes.

Do the following:

  1. In the Additional Claims section, click Add Field.

  2. In the SAML Claim field, enter the claim name to be sent to the service provider.

  3. Select one of the following types.

    • Basic: Standard claim format.

    • Unspecified: No specific format defined.

    • URI Reference: Claim uses a URI-based format.

  4. In the Oloid Value dropdown, select the corresponding Oloid attribute (for example, Oloid ID).

    Note: Click Add Field to add additional claim items.

  5. Click Save.

    The Custom claims tab is configured.

Group Claims

The Group Claims section allows you to pass user group-related attributes from Oloid to the Service Provider during authentication.

  1. In the Group Claims tab, expand the Group Claims section.

    The Group Claims section is displayed.

  2. Click Add Field.

  3. Enter the following details:

    1. Attribute Name: Enter the group attribute name to be sent to the Service Provider.

    2. Type: Select the claim format:

      1. Basic

      2. Unspecified

      3. URI Reference

    3. Oloid Value: Enter or select the group-related value.

    4. Condition: Select one of the following:

      1. Contains

      2. Equal

      3. Starts With

  4. Click Save.

    The Group Claims section is configured successfully.

    The SAML IDP is successfully configured.


Keywords

| SAML Okta integration | Configure SAML IdP in Oloid | Oloid Tenant Admin Portal SAML configuration |

Did this answer your question?