<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007mQcEeCAKOkta Classic EngineSingle Sign-OnAnswered2022-07-12T04:15:02.000Z2022-07-06T06:41:45.000Z2022-07-12T04:15:02.000Z

sham.15714 (Customer) asked a question.

Does Okta support pre filling username from Authn request during SAML single sign on?

Will Okta honor passing subject as email in authn request and does okta auto fill the username field if we pass subject in authn request? If not, any other way, we can use to auto fill username field in Okta from authn request during SAML sso?


  • Mihai N. (Okta, Inc.)

    No, this is not currently supported.

    You can suggest a feature enhancement on the Okta Community page by going to the Community Ideas tab. Features suggested in our community are reviewed and can be voted and commented on by other members. High popularity will increase the likelihood of it being picked up by the Product Team and it being implemented.  

    More details here: 

    https://support.okta.com/help/s/blog/a674z000001cj7YAAQ/okta-ideas-faq?language=en_US

    Expand Post
    Selected as Best
  • Mihai N. (Okta, Inc.)

    Hi @sham.15714 (Customer)​ , Thank you for reaching out to the Okta Community!

     

    If we're talking about an SP (service provider) initiated SAML login flow where you don't already have an active session in Okta, there would be no way to anticipate what account you're looking to sign in with. 

    The one way I know you could achieve a seamless login experience would be by leveraging Desktop SSO via kerberos. But this comes with multiple prerequisites like an AD integration and using domain joined machines.

    If you're interested in that route, you can find more details here.

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope it helps! 

    Expand Post
  • sham.15714 (Customer)

    I am not looking at kerberos. In response to "there would be no way to anticipate what account you're looking to sign in with" , according to standard https://www.oasis-open.org/committees/download.php/35711/sstc-saml-core-errata-2.0-wd-06-diff.pdf 3.4.1 section, we can add subject attribute with email address. So i tried with okta this way, and okta doesn't auto fill the email address/username field in okta login page during SP initated sso. So I want to know if there are any other way we can use to auto fill username field in okta login page during sp initiated sso. Is it possible to do so?

    Thanks for response.

    Expand Post
    • Mihai N. (Okta, Inc.)

      No, this is not currently supported.

      You can suggest a feature enhancement on the Okta Community page by going to the Community Ideas tab. Features suggested in our community are reviewed and can be voted and commented on by other members. High popularity will increase the likelihood of it being picked up by the Product Team and it being implemented.  

      More details here: 

      https://support.okta.com/help/s/blog/a674z000001cj7YAAQ/okta-ideas-faq?language=en_US

      Expand Post
      Selected as Best
This question is closed.
Loading
Does Okta support pre filling username from Authn request during SAML single sign on?