Okta

How to Configure SAML 2.0 for Panorama9

Contents


Supported Features

The Okta/Panorama9 SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Sign in to Panorama9 and select Manage > Extensions.

  2. Enter the following:

    • Enable Single Sign-On.

    • Identity provider login URL: Copy and paste the following:

      Sign in to the Okta Admin app to generate this variable.

    • Enter the x509 Certificate fingerprint.

      Use the fingerprint below and convert it to the format Panorama9 requires. Change all letters in the fingerprint below to upper case and insert colons after every second character. For example, if the fingerprint below were 1x2y3z, change it to 1X:2Y:3Z using a text editor, before pasting it into the form.

      Sign in to the Okta Admin app to generate this variable.

    • Save the Login URL value. Note the digit numeric ID at the end of the Login URL.

    • Click Save:

    Sign in here: http://www.panorama9.com/sign-in, enter SAML config values

  3. In Okta, select the Sign On tab for the Panorama9 SAML app, then click Edit.

    • SSO ID: Enter the digit numeric ID you made a copy of in step 2.

    • Click Save:

    Enter SSO ID into Okta, Sign On page

  4. Done!

Notes

IDP-initiated flows can be simulated through OAN Bookmark Application: Simulating an IDP-initiated Flow with the Bookmark App

You need to use the Panorama9 Login URL (step 2) for the Bookmark URL value.

SP-initiated SSO

Go to [your-Login-URL] you made a copy of in step 2.