<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D51Y00008cfpgjSAAOkta Classic EngineSingle Sign-OnAnswered2021-05-05T09:11:06.000Z2020-05-29T15:36:59.000Z2020-06-05T17:19:57.000Z
  • User15869522308388393993 (Vendor Management)

    Thank you for contacting Okta,

     

    • The service provider will occasionally require that the assertion contains additional attributes such as first name, last name, department, etc to help identify the user. In such cases, be sure to ask the vendor to provide you with the Attribute Name (i.e. firstName, lastName) and Name Format (Unspecified, URI Reference, and Basic) for each required attribute.

     

    • You will also need to provide the vendor/developer with the following information from the Okta application (accessed via the View Setup Instructions button in the application's Sign On tab):

     

    1. The Identity Provider Single Sign-On URL. The SP may refer to this as the "SSO URL" or "SAML Endpoint." It's the only actual URL Okta provides when configuring a SAML application, so it's safe to say that any field on the Service Provider side that is expecting a URL will need this entered into it.
    2. The Identity Provider Issuer. This is often referred to as the Entity ID or simply "Issuer." The assertion will contain this information, and the SP will use it as verification.
    3. The x.509 Certificate. Some service providers allow you to upload this as file, whereas others require you paste it as text into a field.

     

    Here is a link that you might find helpful, that explains how to set up an custom SAML app, and how to generate Signature Certificate and where to find the SP issuer and the Single logout URL:

    https://help.okta.com/en/prod/Content/Topics/Apps/Apps_App_Integration_Wizard_SAML.htm

     

    Have an nice day,

     

     

    Paul Munteanu

    Technical Support Engineer

     

    Expand Post
This question is closed.
Loading
how to generate Signature Certificate and sp issuer & Single logout url???