Okta

How to Configure SAML 2.0 for Jupiter One

Contents


Supported Features

The Okta/Jupiter One SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Login to your Jupiter One account.

  2. Click the Settings gear icon, then select Single Sign On:

    jupiter1

  3. CONFIGURE:

    jupiter2

  4. From the Configuration page, make a copy of your Audience URI (SP Entity ID) and SSO URL values:

    jupiter3

  5. Enter the following:

    • Client Name: Enter OKTA.

    • SAML Metadata Document URL: Copy and paste the following:

      Sign into the Okta Admin dashboard to generate this value.

    • Click Save:

    jupiter4

  6. In Okta, select the Sign On tab for the Jupiter One SAML app, then click Edit:

    • Enter your SSO URL value you made a copy of into the ACS URL field.

    • Enter your Audience URI (SP Entity ID) value you made a copy of in step 4 into the Entity ID field.

    • Click Save:

    jupiter5

  7. Optional: Group Attribute Steps: To send groups as a part of SAML assertion, in Okta select the Sign On tab for the Jupiter One app, then click Edit.

    • Select the appropriate filter from the drop-down menu, then type the preferred value into the field.

    • Click Save.

      Note: To send all groups a user is assigned to, select Regex and type .* (dot and star sign).

    jupiter6

  8. Done!

Notes


SP-initiated SSO

Go to: https://[baseurl].apps.dev.jupiterone.io/ URL.