Okta

How to Configure SAML 2.0 for Mambu

Contents


Supported Features

The Okta/Mambu SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Login to your Mambu environment.

  2. Navigate to Administration > Access > Federated Authentication, then check Federated Authentication (SSO).

  3. Follow the steps below:

    • Name: Enter OKTA.

    • Single Sign-On Endpoint: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Certificate Fingerprint: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Issuer ID: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • OPTIONAL: Check Enable Single Logout to enable SLO.

      • Download mambu.pem certificate.

      • Logout URL: Copy and paste the following:

        Sign into the Okta Admin dashboard to generate this value.

      • Click Test FA Connection to check the settings. You should be redirected to the Okta SSO endpoint URL successfully (opened in a new window).

    • Click Save Changes.

    mambu_newa.png

  4. OPTIONAL: To enable Single Logout in Okta, select the Sign On tab for the Mambu app, then click Edit.

    • Check Enable Single Logout.

    • Signature Certificate: Upload the mambu.pem certificate you downloaded in step 3

    • Click Save.

    mambu1.png

  5. Done!

Notes

SP-initiated SSO

  1. Go to: https://[your-subdomain].mambucloud.com or https://[your-subdomain].mambu.com.

  2. Click Login with OKTA.

  3. mambu2.png