Okta

How to Configure SAML 2.0 for ExpenseIn

Contents


Supported Features

The Okta/ExpenseIn SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Log in to ExpenseIn as an administrator.

  2. Click Admin:

    expensein1.png

  3. Navigate to Single Sign On, then click Add Provider:

    expensein2.png

  4. Enter the following:

    • Provider Name: Enter a preferred name.

    • Enabled: Select Yes.

    • Sign-in Mode: Select either Mixed Mode or SSO Only.

    • Provider Initiated Sign-in: Select Yes.

    • Click Load from Metadata....

      expense_1.png

    • Identity Provider Metadata: Copy and paste the following:

      Sign in to Okta Admin app to have this variable generated for you.
    • Click Create:

    expense_2.png

  5. Still in ExpenseIn, select the Domains tab, then click Add Domain:

    expensein4.png

  6. Enter the following:

    • Domain Name: Enter the domain name you wish to configure SSO for.

    • Identity Provider: Select the Identity Provider you created in step 5.

    • Click Create:

    expensein5.png

  7. Done!


Notes

SP-initiated SSO

  1. Go to: https://app.expensein.com.

  2. Click Sign in with SSO:

    expensein6.png

  3. Enter your email, then click Sign In:

  4. expensein7.png