Okta

How to Configure SAML 2.0 for Brandfolder

  1. Contact the Brandfolder Customer Experience team and request that they enable SAML 2.0 for your account.

  2. Include the following Metadata URL with your request: Copy and paste the following:

    Sign into the Okta Admin dashboard to generate this value.

  3. The Brandfolder Customer Experience team will process your request and will provide you with an ACS URL value in the following format:

    https://brandfolder.com/organizations/[slug]/saml

    For example: https://brandfolder.com/organizations/acme/saml

  4. In Okta, select the General tab for the Brandfolder app, then click Edit.

    • Enter the Slug value into the corresponding field.

    • Click Save.

    brandfolder1.png

  5. Optional: If you want to pass Okta groups as part of the teams group attribute:

    • In Okta, select the Sign On tab for the Brandfolder app, then click Edit.

    • Select your preferred filter for the teams attribute (the Regex rule with the value ".*" in order to send *all* Okta groups as part of the teams group attribute we used in our example).

    • Click Save.

    brandfolder_new1.png

  6. Done!


Notes:

IDP-initiated flows, SP-initiated flows, and Just In Time (JIT) provisioning are all supported.

For SP-initiated Flows:

  1. Open the following URL: https://brandfolder.com/organizations/[slug]/signin.

  2. Click Login with SSO:

  3. brandfolder2.png