Okta

How to Configure SAML 2.0 for Espressive

Contents


Supported Features

The Okta/Espressive SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Contact the Espressive Support team (support@espressive.com) and request that they enable SAML 2.0 for your account.

  2. Save, then attach the following metadata file to your request:

    Sign into the Okta Admin dashboard to generate this value.

  3. The Espressive Support team will process your request and will provide you with your Subdomain value and SP metadata.

  4. In Okta, select the Sign On tab for the Espressive app, then click Edit.

    • Enter the Subdomain value provided by Espressive into the corresponding field.

    • Click Save:

    expressive_newa.png

  5. OPTIONAL: To enable SLO follow the steps below:

    1. Open the SP metadata file provided to you by Espressive Support

    2. Copy the value provided in the attribute <ns1:X509Certificate>:

      expressive_newb.png

    3. Open a text editor, and paste the copied certificate. Then add ----BEGIN CERTIFICATE--- as the first line and ---END CERTIFICATE---- as the last line, then save the file as sp.cert:

      -----BEGIN CERTIFICATE-----
      [copied value]
      -----END CERTIFICATE-----
      
      
    4. In Okta, select the Sign On tab for the Espressive SAML app, then click Edit:

      • Check Enable Single Logout.

      • Upload sp.cert to Signature Certificate field.

      • Click Save:

      expressive_newc.png

  6. Done!


Notes

The following SAML attributes are supported.

For SP-initiated SSO

Go to: https://[your-subdomain].espressive.com.