Okta

How to Configure SAML 2.0 for Smartsheet

Contents


Supported Features

The Okta/Smartsheet SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Sign in to your Smartsheet enterprise account as the administrator.
  2. Click on your account, then select Admin Center:

    Click on your account, then select Admin Center
  3. In the Authentication section, select SAML.

  4. Click the edit configuration link for the SAML option.

  5. In the SAML Administration window that opens, select Add IdP.

  6. Enter the following:

    • IdP Nickname: Enter Okta.

    • Idp Metadata: Copy and paste the following:

      Sign in to the Okta Admin app to generate this variable.
    • Click Save.

  7. Save the SSO URL.

  8. Optionally you can edit the CNAME. For more information about the CNAME, refer to the Smartsheet documentation located here: https://help.smartsheet.com/articles/2476141-configure-saml-sso.

  9. Click Edit in the Domains (advanced) section, then do the following:

    • Enter your domain into the corresponding field.

    • Click Add domain.

    • Click Close.

  10. In Okta, select the Sign On tab for the Smartsheet app, then click Edit.

    • Scroll down to the ADVANCED SIGN-ON SETTINGS section.

    • Paste the following ACS URL into the corresponding field:

      https://sso.smartsheet.com/Shibboleth.sso/SAML2/POST

    • Paste the following Audience Restriction into the corresponding field:

      https://sso.smartsheet.com/saml

    • Click Save.

  11. Go back to Smartsheet and click Activate to activate your IdP.

  12. Done!


Notes

The following SAML attributes are supported:


SP-initiated SSO

Open the URL you saved in Step 7, above.