Okta

How to Configure SAML 2.0 for HubSpot

Contents


Supported Features

The Okta/HubSpot SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Log in to your HubSpot account.

  2. Click the Settings gear icon.

  3. Scroll down to the Single Sign-on section, then click Set up:

    :"Single

  4. Enter the following information:

    • Audience URI (Service Provider Entity ID): Make a copy of your .

      For example: If your Audience URI is https://api.hubspot.com/login-api/v1/saml/login?portalId=1234567, your Portal Id is 1234567

    • Identity Provider Identifier or Issuer URL: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Identity Provider Single Sign-On URL: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • X.509 Certificate: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.
    • Don't click Verify yet:

    :"Enter

  5. In Okta, select the Sign On tab for the HubSpot SAML app, then click Edit.

    • Enter the Portal Id value you made a copy of in step 4 into the corresponding field.

    • Click Save:

    :"enter

  6. Go back to the Set up Single Sign-on page in HubSpot and click Verify. You’ll be prompted to log in with your Okta account to finish the configuration and save your settings.

    :"Click

  7. Done!


Notes

If you do not use email as a login in Okta, you need to specify Application username format as Email, otherwise Hubspot will not work.


SP-initiated SSO

  1. Go to: https://app.hubspot.com/login/sso

  2. Enter your email, then click Log in:

    :"go