Okta

How to Configure SAML 2.0 for Braze

Contents


Supported Features

The Okta/Braze SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Login to your Braze account.

  2. Click on your icon, then select Company Settings from the dropdown menu. Next, select the Security Settings tab, and toggle Okta Single Sign-On (SSO) button to active:

    braze1.png

  3. Enter the following:

    • Target URL: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Certificate: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.
    • Click Save Changes.

    braze2.png

  4. To enable IdP-initiated flow, you need to create an API Key with sso.saml.login permission enabled.

    Note: If this API Key already exists, go to step 6.

    • Go to Developer Console from APP SETTINGS, then click Create New API key:

    braze_new1.png

  5. Follow the steps below:

    • API Key Name: Enter a preferred name.

    • Scroll down to the SSO section and check the sso.saml.login option.

    • Click Save API Key:

    braze_new2.png

  6. Make a copy of the API Key with sso.saml.login permission enabled.

    braze_new3.png

  7. In Okta, select the Sign On tab for the Braze SAML app, then click Edit:

    • Default Relay State: Enter the API Key value you made a copy of in step 6.

    • Click Save:

    braze_new4.png

  8. Done!


Notes

SP-initiated SSO

  1. Go to: https://dashboard.braze.com/sign_in.

  2. Enter your email and click Continue:

    braze3.png

  3. Click Sign in with Okta:

    braze4.png