Okta

How to Configure SAML 2.0 for Emburse

Contents


Supported Features

The Okta/Emburse SAML integration currently supports the following features:

  • IdP-initiated SSO
  • SP-initiated SSO
  • JIT (Just In Time) Provisioning

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Login to your Emburse tenant using an Admin account.

  2. Select Company Settings from the left sidebar:

    emburse1.png

  3. Scroll down until you see the Security box and click Enable Single Sign-On:

    emburse2.png

  4. Under the Single Sign-On (SSO) Setup box, enter the domain that you would like to use, then click NEXT:

    emburse3.png

  5. On the next screen copy and paste the following into the IdP Metadata field, then click SAVE:

    Sign in to Okta Admin app to have this variable generated for you.

    emburse4.png

  6. The SAML activation will be sent to Emburse for approval. Emburse will contact you once SAML is enabled.

  7. In Okta, select the Sign On tab for the Emburse app, then click Edit.

    • Scroll down to the ADVANCED SIGN-ON SETTINGS section.

    • Enter the same domain you entered in Step 4 in the Domain field.

    • Click Save.

    emburse6.png

  8. Done!


Notes

The following SAML attributes are supported:

    Name Value
    firstname user.firstName
    lastname user.lastName

SP-initiated SSO

  1. Go to https://app.emburse.com/login.

  2. Enter your email address and then click NEXT.

  3. emburse7.png

  4. Click LOG IN WITH SSO.

  5. emburse8.png