<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008C3jRXSAZOkta Classic EngineOkta Integration NetworkAnswered2020-09-01T21:59:18.000Z2016-03-31T17:23:55.000Z2018-03-27T16:58:41.000Z
  • svcV.75126 (Customer)

    Hi Will,

    From the application in question click on the 'Sign On' tab and then the 'View Setup Instructions' button

     

    The format of the resulting screen varies by app but the certificate is almost always included.

     

    -Matt

     

    Expand Post
  • WillI.16141 (Customer)

    Hi Matt, thanks for the answer. Isn't my application the service provider, and doesn't it want a certificate signed by Okta, the IdP? My application's Okta setup documentation says "Obtain the SSL certificate of the IdP."
  • svcV.75126 (Customer)

    Hi Will,

     

    The application is the IdP configuration for a specific SP but the SP is really the target application.

     

    The documentation seems poorly worded to me, based on past experiences you should provide them with the cert I described.  This is the certificate that can be used to verify the digital signature applied to the SAML assertions (by the IdP) when they are recieved by them (the SP)

     

    Are you configuring an OAN app that has Okta documentation? or is this documentation provided by the SP that is specific to an Okta setup?

     

    What is the app?

     

    -Matt

    Expand Post
  • WillI.16141 (Customer)

    Hi Matt,

     

    The app is "Zscaler Admin Login." Looking more closely it seems that Zscaler's documentation recommends integrating with the generic "SAML Service Provider" app instead. That app, under "view setup instructions," does indeed offer a certificate that I can import into Zscaler. So I guess this thread is really about the "Zscaler Admin Login" app not working as intended. I'm good here, thanks!

     

    W

     

    Expand Post
This question is closed.
Loading
where is the saml certificate?