<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008G7UalSAFOkta Classic EngineAdministrationAnswered2024-01-15T13:42:30.000Z2015-09-25T19:36:51.000Z2017-07-24T18:43:54.000Z
  • I suspect you created this application using the SAML Template app?  If you are using the SAML template application, then you need to assign the template to the admin.  This is not ideal as it allows them to administer all SAML template apps.  I recommend using the Application Wizard (Green Button) for your SAML applications.  You can then reference them by name for application administrators.

     

    Eric Knittel, Regional Director, Professional Services, Okta
    Expand Post
  • Phil L Ibarrola (Thoughtworks)

    Hi Patrick,

     

    I have found granting admin privileges for apps created with SAML templates requires you to grant admin privileges to ALL applications created with that template.

     

    So in your scenario, you would grant admin privileges to the Template SAML 2.0 App.  Unfortunately, this user would then be granted admin privileges to any apps in your org which was created with that template.

     

    What we have done to get around this is to create all our apps using the "Create a New App" option when adding them to Okta.  This allows you to have better control over admin privileges.  The only down side was passing group attributes from Okta to custom created apps wasn't possible (we use groups to enforce authorization within the application).  However, I believe this limitation is gone (or will be soon).

     

    Thanks,

    Phil

    Expand Post
  • PatrickC.59989 (Customer)

    Thx Eric and Phil. I tried the Application Wizard or the "Create a New App" option as you suggested, and it does give me similar SAML 2.0 integration forms seen with in the Template SAML 2.0 App, which should help solve my issue.
This question is closed.
Loading
Okta adminstration with the Application Admin role