Okta

How to Configure SAML 2.0 for Igloo

Contents


Supported Features

The Okta/Igloo SAML integration currently supports the following features:


Configuration Steps

  1. Sign into Igloo as an administrator.

  2. Navigate to Control Panel > Sign in Settings:

    igloo1.png

  3. Click the Configure SAML Authentication link:

    igloo2.png

  4. The SAML Configuration page displays.

  5. In the General Configuration section, enter the following:

    • Connection Name: Enter Okta.

    • IdP Login URL: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Public Certificate: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.
    • Leave the rest of the options with their default values.

    igloo3.png

  6. In the Response and Authentication Configuration section, enter the following:

    • Select Okta from the Identity Provider list.

    • Select your desired option from the Identifier Type list. We used Email Address in our example. Select Custom Identifier if you are going to use a NameID value that is different than email address (for example : email prefix).

    • Leave the rest of the options with their default values.

    igloo4.png

  7. In the User creation on Sign in section, enter the following:

    • Select the Create a new user in your site when they sign in (users will be added to manage members on sign in) radio button in order to enable Just In Time (JIT) provisioning:

      igloo5.png

    • Select the Use SAML button on “Sign in” screen radio button, then click Save:

      igloo6.png

  8. Close the SAML Configuration page.

  9. In Okta, select the General tab for the Igloo SAML app, then click Edit.

    • Enter your Login URL into the corresponding field.

    • Click Save.

    igloo_new1.png

  10. Done!


Notes

The following SAML attributes are supported:

SP-initiated SSO

  1. Open the Igloo Login URL.

  2. Click Use : Okta:

  3. igloo7.png