Skip to main content

How to enable Single Sign On (SSO) with Okta using SAML 2.0 protocol

This help article describes the steps to enable SSO for Contify account with Okta using SAML 2.0 protocol

Written by Contify Team
Updated today

Enable Single Sign-On (SSO) with Okta (SAML 2.0)

This guide explains how to configure Single Sign-On (SSO) between Okta and the Contify platform using the SAML 2.0 protocol.

With this integration, users can log in to Contify using their Okta credentials.

Systems Involved

  • Client

  • Identity Provider (Okta)

  • Service Provider (Contify)

Prerequisites

  • An active Okta account

  • Administrator access to Okta

Setup in Okta

Create Contify Application in Okta

  1. Open the Okta Admin Portal

  2. From the left navigation, select Applications

  3. Click Applications, then click Create App Integration

  4. Select SAML 2.0 as the sign-in method and click Next

  5. Enter Contify as the App Name and click Next

Configure SAML Settings

  1. Add the following details:

Click Next

Complete Application Setup

  1. Select This is an internal app that we have created and click Finish

Share Metadata URL

  1. Copy the SAML 2.0 Metadata URL and share it with Contify

Configure Authentication Policy

  1. Under User Authentication, select:

  • Authentication policy: Okta Agent Registration

  • Click Save

Add and Assign Users

  1. Go to the Import section under the Contify application

  2. Click Import from CSV

  3. Download the CSV template

  4. Add users who need access

  5. Upload the CSV and click Import Users

  6. Select users and Confirm assignments

Enable Self-Service Access

  1. Go to the Assignments section under the Contify application

  2. Edit Self Service

  3. Enable Allow users to request app

  4. Save the changes

Testing

UAT (User Acceptance Testing)

  • Contify will provide a UAT environment and configure the application with test data

  • Client needs to provide a few user IDs for testing

  • Testing will be done collaboratively for sign-off

Production

  • Contify and the client will configure their respective systems

  • After release, sanity testing will be done with a few active users

  • Once validated, SSO will be rolled out to all users

Did this answer your question?