Okta

How to Configure SAML 2.0 for Duo Admin Panel

Contents


Supported Features

The Okta/Duo Admin Panel (encrypted assertions) SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Login to your Duo Admin Panel instance.

  2. Navigate to Administrators > Admin Login Settings.

  3. Authentication with SAML: Select a required option. We used Optional in our example.

    Note: For the Required option - Administrators, except Owners, will be required to sign in with Okta.

  4. duoadmina.png
  5. Scroll down to the SAML Identity Provider Settings section, and enter the following:

  6. duoadminb.png
  7. Click the link to download the Encryption certificate:

    duoadminc.png
  8. In Okta, select the Sign On tab for the Duo Admin Panel SAML app, then click Edit.

  9. Click Browse to locate, then Upload the Encryption Certificate (step 5):

    duoadmind.png
  10. Scroll down to ADVANCED SIGN-ON SETTINGS.

  11. Enter your SAML URL value (step 4):

  12. Click Save.

    duoadmine.png
  13. Done!


Notes

SP-initiated SSO

  1. Open your Duo Admin Panel login URL.

  2. Click Single Sign On:

    duoadminf.png
  3. Enter your Email address.

  4. Click Continue to Identity Provider:

    duoadming.png