Okta

How to Configure SAML 2.0 for OpenEye Web Services


Contents


Supported Features

The Okta/OpenEye Web Services SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Sign in to your OpenEye Web Services instance as administrator.

  2. Go to MANAGEMENT > Integrations , then click ADD NEW INTEGRATION:

    go to MANAGEMENT - > Integrations, click ADD NEW INTEGRATION

  3. In the Add New Integration window, select OKTA, then click NEXT:

    Select Okta, then click NEXT

  4. Select Identity Management, then check Enable Third Party Authentication:

    Select “Identity Management, then check “Enable Third Party Authentication

  5. Do the following:

    • Note the Single sign on URL (ACS URL) and Audience URI (SP Entity ID) values.

    • Identity Provider Metadata: Copy and paste the following:

      Sign in to Okta Admin app to have this variable generated for you.
    • Click SAVE.

    Note URL (ACS URL) and Audience URI values, copy Metadata into OpenEye, click Save

  6. In Okta, select the Sign On tab for the OpenEye Web Services app.

    • Scroll down to the ADVANCED SIGN-ON SETTINGS section.

    • Enter the Single sign on URL (ACS URL) and Audience URI (SP Entity ID) values from step 5 into the corresponding fields.

    • Click Save.

    openeye3.png

  7. Still in Okta, navigate to Security > API > Trusted Origins.

    • Click Add Origin.

      openeye4.png

    • Name: Enter OpenEye Web Services.

    • Origin URL: Enter your OpenEye Web Services base URL.

      For example: If you log into https://acme.host.net/acme, enter https://acme.host.net.

    • Type: Select CORS.

    • Click Save.

    openeye5.png

  8. Done!


Notes

SP-initiated SSO

  1. Open the OpenEye Web Services login URL.

  2. Enter your Email.

  3. Click NEXT:

    openeye6.png

  4. Select the Identity Provider from the dropdown list.

  5. Click NEXT:

    openeye7.png

  6. Enter your Okta credentials.

  7. Click Sign In:

    openeye8.png