Skip to main content

Privacera Documentation

Generate an Okta Identity Provider metadata file and URL

To generate a metadata file and URL for an Okta Identity Provider (IdP):

  1. Log in to your Okta account as the Okta SSO account administrator.

  2. From the navigation menu, select Applications > Applications.

  3. Click Create App Integration.

    Note

    You can also edit existing apps with new configuration values.

  4. Select SAML 2.0 and then click Next.

  5. In General Settings, enter a short descriptive app name in the App name field. For example: Privacera Portal SAML.

  6. Click Next.

  7. In SAML Settings, enter the following values:

    Field

    Value

    Single sign on URL

    http://portal_hostname:6868/saml/SSO

    Audience URI (SP Entity ID)

    privacera_portal

    Default RelayState

    The value identifies a specific application resource in an IdP initiated SSO scenario. In most cases this field will be left blank.

    Name ID format

    Unspecified

    Application username

    Okta username

    UserID

    user.login

    Email

    user.email

    Firstname

    user.firstName

    LastName

    user.LastName

    Note

    If you enter an email address for UserID, the domain name is removed to create a username. For example: john.joe@company.com becomes john.joe.

  8. Click Next.

  9. Select the Feedback tab and click I'm an Okta customer adding an internal app.

  10. Click Finish.

  11. From the General tab, scroll down to the App Embed Link section and copy the Embed Link (Identity Provider URL).

Generate and save Identity Provider metadata

To generate and save Identity Provider metadata in XML format:

  1. Go to the Sign On tab.

  2. In Settings, select Identity Provider Metadata from the Sign on methods section.

    The configuration file will open in a separate window.

  3. In SAML Signing Certificates, click Generate new certificate.

  4. Click Actions > View IdP metadata.

    Note

    Ensure that the certificate you are downloading has an active status.

    The XML file will be opened in a new tab.

  5. Save the file in XML format.

Identity Provider initiated SSO

  1. From Applications, log in to the Okta Home Page Dashboard as a user by selecting the Okta Dashboard icon.

  2. Login to the Privacera Portal by selecting the newly added app icon.