<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00009wij7lCAAOkta Classic EngineSingle Sign-OnAnswered2025-02-11T09:00:22.000Z2024-01-09T10:45:37.000Z2024-01-11T08:58:10.000Z

9umm9 (9umm9) asked a question.

General authorization server/URL for OIDC with OKTA IDP access

Hello Okat support. One of the customers of our application asked us – they use Okta for their organization and if we can allow them to use okta SSO in our application as well. Currently for our application we already use Azure B2C. We already support Google accounts in our B2C to provide SSO. I was able to add Okta as OIDC Idp into configuration of our B2C. And it works well even with Okta trial account. The main question I have – its about general sign in Url. What I found in Okta documentation – is that every Org has its own domain and appropriate authorization server (like https://${yourOktaOrg}/.well-known/openid-configuration). And I tested OIDC with specific domain. The problem for me here – is that this way I have to register new OIDC Idp per Okta tenant in B2C. So for every new tenant I need to register another Okta Idp. This looks not like a generic solution. Is there a way how we can add a general Url, where Okta could identify the Org (domain) by e.g. provided by user email? Is there such feature in okta available in OIDC where user will be able to select their org and then login? What can you advise in such cases?

Thank you in advance


9umm9 likes this.
  • Mihai N. (Okta, Inc.)

    Hi @9umm9 (9umm9)​ , Thank you for reaching out to the Okta Community! 

     

    A generic solution is not available. User authentication is done at tenant level not at okta.com level, as a user may be part of one or multiple independent tenants at the same time. 

    For now you can suggest a Feature Enhancement on the Okta Community page by going to the Community Ideas tab. Features suggested in our community are reviewed and can be voted and commented on by other members. High popularity will increase the likelihood of it being picked up by the Product Team and it being implemented. 

    More details here.

     

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    Ask the Experts: Now Thru 1/31 Okta FastPass Engineering and Product Teams Answer Your Questions

    Expand Post
    Selected as Best
  • Mihai N. (Okta, Inc.)

    Hi @9umm9 (9umm9)​ , Thank you for reaching out to the Okta Community! 

     

    A generic solution is not available. User authentication is done at tenant level not at okta.com level, as a user may be part of one or multiple independent tenants at the same time. 

    For now you can suggest a Feature Enhancement on the Okta Community page by going to the Community Ideas tab. Features suggested in our community are reviewed and can be voted and commented on by other members. High popularity will increase the likelihood of it being picked up by the Product Team and it being implemented. 

    More details here.

     

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    Ask the Experts: Now Thru 1/31 Okta FastPass Engineering and Product Teams Answer Your Questions

    Expand Post
    Selected as Best
This question is closed.
Loading
General authorization server/URL for OIDC with OKTA IDP access