Okta

How to Configure SAML 2.0 for Cezanne

Contents


Supported Features

The Okta/Cezanne SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. In Okta, select the Sign On tab for the Cezanne app, then click Edit.

    • Enter the Company ID provided to you by Cezanne into the Company ID field.

    • Click Save.

    cezannea.png

  2. Login to your Cezanne account as an administrator.

  3. Navigate to System Setup > Security Settings > Single Sign-On Configuration:

    cezanne2.png

  4. Check the SAML 2.0 box, then select Advanced Configuration:

    cezanne3.png

  5. Click Add New, then enter the following (see screen shot at the end of step for reference):

    • Display Name: Enter a display name, for example, Okta.

    • Entity Identifier: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • SAML Binding: Select POST.

    • Security Token Service Endpoint: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Public Key Certificate: Download then upload the following certificate:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Click OK then Save.

    cezanne4.png

  6. You now need to associate Okta users with Cezanne users. Navigate to System Setup > Manage Users > User Settings:

    cezanne5.png

  7. Click Search.

  8. Select the user you want to update.

  9. Select the Single Sign-On tab then click Add New and enter the following (see screen shot at the end of step for reference):

    • Identity Provider: Select the identity provider’s name you setup in step 5 above.

    • User Identifier: Enter the user’s OKTA username.

    • Click Save.

    cezanne6.png

  10. Done!


Notes

SP-initiated SSO

  1. Go to the URL marked in red below on the Cezanne Single Sign-On Configuration page:

    cezanne_new2.png

  2. Click Enterprise log in page:

    cezanne_new3.png

  3. You will see an option to login using your Identity Provider:

    cezanne_new4.png