Okta

How to Configure SAML 2.0 for Federated Directory


Read this before you enable SAML

Enabling SAML will affect all users who use this application, which means that users will not be able to sign-in through their regular log-in page. They will only be able to access the app through the Okta service.

Backup URL

An admin can create multiple directories within Federated Directory. On every directory SAML can be enabled. Once enabled it's big bang for the users within that directory. But an admin can only enable SAML on that directory when his account is located in another directory.

Contents


Supported Features

The Okta/Federated Directory SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Login to your Federated Directory account.

  2. Navigate to Directories, then click CREATE DIRECTORY:

    fed-directory.png

  3. Give your new directory a name and a short description, then click CREATE DIRECTORY:

    fed-directory2.png

  4. Follow the steps below:

    • Make a copy of the directory id value.

    • Authentication method: Select SAML.

    • Login URL: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Verification certificate: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.
    • Click SAE AUTHENTICATION METHOD:

    fed-directory3.png

  5. In Okta, select the Sign On tab for the Federated Directory SAML app, then click Edit.

    • Enter the directory id value you made a copy of in step 4 into the corresponding field.

    • Click Save.

    fed_directory3.png

  6. Done!


Notes

SP-initiated SSO

  1. Go to: https://www.federated.directory/of/[your-company-name].

  2. Select Okta Integrated, then click LOGIN WITH YOUR COMPANY ACCOUNT:

  3. fed-directory4.png