Okta

How to Configure SAML 2.0 for SpaceIQ

  1. Login to your SpaceIQ tenant as an administrator.

  2. Click on the Integrations icon in the upper right of the application:

    spaceiq1.png

  3. Under PROVISIONING AND SSO, hover over Okta and click Enable:

    spaceiq2.png

  4. Enter the following:

    • SAML Identity Provider Issuer: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • X.509 Certificate: Copy and paste the following (PEM text format):

      Sign into the Okta Admin Dashboard to generate this variable.
    • Click Save and Activate.

  5. You should now see Okta as active:

    spaceiq3.png

  6. Hover over the Okta app under the Active section and click on Configure. Make a copy of the values for SAML Single Sign On URL and SAML Audience URI.

  7. Back in Okta, select the General tab for the SpaceIQ app, then click Edit.

    • Enter the values you obtained from SpaceIQ for SAML Single Sign On URL and SAML Audience URI into the corresponding fields.

    • Click Save.

    spaceiq4.png

  8. Done!


Notes:

IdP-initiated flows are supported.

SP-initiated flows and Just In Time (JIT) provisioning are not supported.