Okta

How to Configure SAML 2.0 for Duo Network Gateway

Contents


Supported Features

The Okta/Duo Network Gateway SAML integration currently supports the following features:


Configuration Steps

  1. Log in to your Duo Network Gateway server's admin console here: https://[Duo-Network-Gateway-Hostname]:8443.

  2. Click the Authentication Source link in the left side menu:

    duo1.png

  3. The Primary Authentication page opens. Scroll down and configure the Configure SAML Identity Provider section as follows (see screen shot at end of step for reference):

    • Entity ID or Issuer ID: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Assertion Consumer Service URL or Single Sign-On URL: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Certificate: Save the following in .cert format, then click Choose File to upload it to Duo.

      Sign into the Okta Admin Dashboard to generate this variable.

    • Click Save Settings.

    duo3.png

  4. Done!


Notes

SP-initiated SSO

Open your Duo Network Gateway login URL.