Okta

How to Configure SAML 2.0 for Talentlms

Contents


Supported Features

The Okta/Talentlms SAML integration currently supports the following features:


Configuration Steps

  1. Sign in to Talentlms as Super Admin or Admin at https://[your Talentlms domain].talentlms.com, where [your Talentlms domain] is the domain you have already set up.

  2. Select the Go to button.

  3. Select Account & Settings and then, select Users on the menu that appears.

  4. Select Single Sign-On (SSO) on the Users screen that opens, then enter the following (see screen shot at end of step for reference):

    • SSO integration type: Select SAML2.0.

    • Identity provider (IdP): Copy and paste the following:

      Sign in to the Okta Admin app to generate this variable.
    • Certificate fingerprint: Copy and paste the following:

      Sign in to the Okta Admin app to generate this variable.
    • Remote sign-in URL: Copy and paste the following:

      Sign in to the Okta Admin app to generate this variable.
    • Remote sign-out URL: Copy and paste the following:

      Sign in to the Okta Admin app to generate this variable.
    • TargetedID, First name, Last Name, and Email should contain the values Username, FirstName, LastName, and Email, as shown in the screen shot below:

    Talentlms_1b.png

  5. Select Save and check your configuration, as shown above.

  6. Done!


Notes

The following SAML attributes are supported:

SP-initiated SSO

For the convenience of your end users, Okta recommends that you hide the Talentlms app and set up a Bookmark app with the Talentlms logo. For instructions on setting up a Bookmark app and hiding the original app, see Simulating an IDP initiated Flow with the Bookmark App.

The link for the SP-initiated flow is use https://<your Talentlms domain>.talentlms.com/index/ssologin/service:saml, where <your Talentlms domain> is the domain you have already set up.

SAML 2.0 access is also available from the Login with SAML 2.0 link on the Talentlms page for your domain at https://<your Talentlms domain>.talentlms.com:

Talentlms_2.png