Okta

How to Configure SAML 2.0 for Aurion

Contents


Supported Features

The Okta/Aurion SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps


There are different configuration steps depending upon:

If you are an on-premise customer

If you are a hosted customer


If you are an on-premise customer

  1. Refer to the Service Provider section of the Aurion SAML SSO guide on how to enable SAML SSO for the Aurion Self Service application.

  2. Refer to the Aurion User Configuration section of the Aurion SAML SSO guide on how to link an Aurion security user to a user’s account in the customer’s Directory.

  3. In Okta, select the Sign On tab for the Aurion app, then click Edit.

    • Enter the Issuer URL (Self Service URL, example: https://AurionSelfService.acme.io) and Callback URL (example: https://AurionSelfService.acme.io/login/callback.

    • Click Save.

    “aurion_new1.jpg"


If you are a hosted customer

  1. Log a support ticket in the Support section of the Aurion.com portal requesting that SAML SSO be enabled for your Self Service environment.

  2. Include the following information in your ticket:

    • The environment name.

    • The IDP Entry endpoint: Copy and paste the following:

      Sign in to the Okta Admin app to have this variable generated for you.

    • Certificate: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.
  3. The Aurion Service Desk will process your request and will advise you once SAML SSO has been enabled in your Self Service environment’s configuration file.

  4. In Okta, select the Sign On tab for the Aurion app, then click Edit.

    • Enter the Issuer URL (Self Service URL, example: https://AurionSelfService.acme.io) and Callback URL (example: https://AurionSelfService.acme.io/login/callback.

    • Click Save.

    “aurion_new1.jpg"

  5. HTTP Header authentication must be enabled for the Self Service environment. This is enabled via the Automatic Logon Parameter task in the Aurion Core application. Refer to the Service Provider section of the Aurion SAML SSO guide for details.

  6. Refer to the Aurion User Configuration section of the Aurion SAML SSO guide on how to link an Aurion security user to a user’s account in the customer’s Directory.

  7. Done!