<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D51Y00009Y29lwSABOkta Classic EngineLifecycle ManagementAnswered2024-04-16T11:15:24.000Z2020-10-01T06:13:21.000Z2020-10-02T07:53:13.000Z

q8l7w (q8l7w) asked a question.

How to configure OKTA Tenant as IDP into an other OKTA Tenant ?

Hello There,

i have 2 OKTA Tenant (2 different account in OKTA)

1. x@xxx.com (this we want to consider as master account)

2. y@yyy.com (this is our client account)

Now,

i want to configure y@yyy.com tenant as IDP into x@xxx.com tenant

 

Questions :

  1. is it possible ?
  2. how can i setup it ?

 

appreciate some help

open for suggestion

 

Thank You.


    • q8l7w (q8l7w)

      Hello,

      i have already gone through this blog but still have few confusion so,

       

      i have created web SAML application into y@yyy.com organisation tenant

      question :

      1. i'm not sure what will be the Single Sign On URL and Audience Restriction ?
      2. where should i configure Assertion Consumer Service URL and Audience URI into SAML application to communicate with x@xxx.com organisation tenant application ?

       

      what i understood from this blog is

      when some user will click on login into x@xxx.com organisation tenant OIDC application at that time

      first, request will go to the x@xxx.com organisation tenant and based on IDP route rule user will redirected to y@yyy.com organisation tenant XAML application login and when user get authenticated it will send response to

      x@xxx.com organisation tenant Assertion Consumer Service URL and Assertion Consumer Service URL will return response to the x@xxx.com organisation tenant OIDC application

       

      please let me know if i mistaken something.

       

      Thank You for you help tho.

      Expand Post
  • feok4 (feok4)

    As mentioned above, you can use Org2org with JIT if the user doesn't exist in the destination org.

  • q8l7w (q8l7w)

    hello,

    can you please suggest how can i get this IdP Issuer URI, IdP Single Sign On URL and IdP Signature Certificate from y@yyy.com organisation tenant web SAML application

     

    Thank You for you help.

    Expand Post
This question is closed.
Loading
How to configure OKTA Tenant as IDP into an other OKTA Tenant ?