How to Configure SAML 2.0 for Zoho Directory


Supported Features

The Okta/Zoho Directory SAML integration currently supports the following features:

For more information on the listed features, visit the Okta Glossary.

Configuration Steps

  1. Log in to your Zoho Directory instance as an administrator.

  2. Navigate to Admin Panel > Security > Custom Authentication and enter the following:

    • ACS URL: Make a copy of this value.

    • Enable SSO: Turn this on.

    • Sign-in URL: Copy and paste the following:

      Sign in to the Okta Admin app to have this variable generated for you.

    • Verification Certificate fingerprint: Save the following as Okta.cert, then click Browse to locate and upload it.

      Sign into the Okta Admin Dashboard to generate this variable.

    • Click Update:

    go to Admin Panel -> Security -> Custom Authentication, enter SAML config values

  3. In Okta, select the Sign On tab for the Zoho Directory SAML app, then scroll down to the ADVANCED SIGN-ON SETTINGS section.

    • Default Relay State: Enter https://directory.zoho.com/

    • ACS URL: Enter the ACS URL value you made a copy of in step 2.

    • Click Save:

    Enter Default Relay State and SSO ID into Okta

  4. Done!


SP-initiated SSO

  1. Go to: https://directory.zoho.com/

  2. Enter your email address, then click Next.

  3. Click Sign in using SAML:

    go to https://directory.zoho.com/, enter email, click Next, click Sign in using SAML