Okta

How to Configure SAML 2.0 for Viima

Contents


Supported Features

The Okta/Viima SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.


Configuration Steps

  1. Log in to your Viima account as an administrator.

  2. Click on your account, then select Admin portal:

  3. viima1.png

  4. Navigate to Settings > Access Rights > Access restrictions, select SAML 2.0 (AD FS, Okta) from Login options, then click Connect to a SAML service:

  5. viima2.png

  6. Enter the following:

    • Login URL: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • Entity ID: Copy and paste the following:

      Sign into the Okta Admin Dashboard to generate this variable.

    • SAML certificate fingerprint (SHA-1 or SHA-256): Copy and paste the following:

      • SHA-256:

        Sign into the Okta Admin Dashboard to generate this variable.

    • Login button title: Enter Login with Okta.

    • Click Connect:

    viima3.png

  7. Still on the Viima page, select the appropriate access rights, then click Save:

    viima4.png

  8. Navigate to Integration > Basic link and make a copy of the URL marked in red below:

    viima5.png

  9. Optional: Group Attribute Steps: To send groups as a part of SAML assertion, in Okta select the Sign On tab for the Viima app, then click Edit.

    • Select the appropriate filter from the usergroups drop down menu, then enter a preferred value.

    • Click Save.

    • Note: To send all groups a user is assigned to, select Regex and enter .* (dot and asterix).

    viima6.png

  10. Done!


Notes

The following SAML attributes are supported:


SP-initiated SSO

  1. Go to the URL you made a copy of in step 6.

  2. Click Login with Okta:

  3. viima7.png