SSO using Okta
Overview
Single sign-on (SSO) is an authentication protocol that allows you to sign in to multiple applications with one centralized authentication. Docsumo supports SSO using Okta. You must have an account owner/admin Docsumo account to configure SSO.
Important:
- You must have access to the Docsumo Owner account to configure SSO.
- The Account Owner needs to request SSO access to configure the settings. Learn more.
How to configure Single Sign-on in Docsumo using Okta
1. Configure SSO in Docsumo App
-
Step 1.1: Log in to your Docsumo account, go to the Organization Settings page, and click on the Security tab.
-
Step 1.2: Click on Configure. This will generate the SP Single Sign-on URL, Audience URI (SP Entity ID), and other details. These details will be used in Step 2 for configuring the Docsumo app in Okta.
2. Configure the Docsumo App in Okta
-
Step 2.1: Log in to the Okta Admin account and navigate to Applications from the side menu.
-
Step 2.2: Select Create App Integration and create your application as shown in the image.
-
Step 2.3: Select the Sign-on method as SAML 2.0, and Create your application
-
Step 2.4: You will be redirected to the General Settings page of your application. Provide a name for your application, e.g., Docsumo, a logo for your application, and click on Next to proceed to configure SAML settings.
-
Step 2.5: In the Configure SAML tab, under SAML Settings, provide the following details:
- Single Sign-on URL: Paste the SP Single Sign-on URL that we create in Docsumo in Step 1.2
- Audience URI (SP Entity ID): Enter the Audience URI (SP Entity ID) that you received in step 1.2.
-
Step 2.6: Click Next and then Finish on the next screen.
3. Configuring Okta details in Docsumo
-
Step 3.1: In Okta, click on the Sign On tab of the application that you created in Step 2.
-
Step 3.2: Click on View Setup Instructions and additional settings fields for your Docsumo application.
-
Step 3.3: Copy the following from Okta:
- Identity Provider Single Sign-On URL
- Identity Provider Issuer
- X.509 Certificate
Then, in the Docsumo SSO settings page, paste the above (see next step).
-
Step 3.4: In the Security tab, under SSO Settings, provide the following details from the last step (3.3):
- IdP Login URL: Identity Provider Single Sign-On URL.
- Issuer URI (IdP Entity ID): Identity Provider Issuer.
- IdP Public Certificate: X.509 Certificate
That’s it! Now, let’s see how to assign your Docsumo application to your users in Okta.
4. Manage users' access control in Okta and test the setup
After setting the necessary configurations in Docsumo, you need to now assign the newly added application to your users.
- Step 4.a. Add application to users
Go to the Assignments tab of your application, click on the Assign dropdown, and select Assign to People.
-
Step 4. b: Next, you can try out the “Test SSO”
That's it! The users of this organization can access Docsumo through SSO. If needed, you can always Delete the SSO setup from this page as well.
Should you have any questions or encounter any issues during the process, feel free to reach out to us at [email protected], and we'll be more than happy to help you.
Updated 4 days ago