Changes

Single Sign-On

1,467 bytes added, 21:30, 5 January 2023
OKTA
====OKTA====
* Log in to OKTA admin account
* Click on the '''Application''' tab and select Applications.
* Click on the '''Add Application''' button and click on''' Create New App''' to create a new application for SmartSimple.
* Set the '''Platform''' as '''Web''', the '''Sign on method''' as '''SAML 2.0''' and Create a new application.
* In the '''General Settings''' page, provide a name for the application i.e. SmartSimple SSO
* In the '''Configure SAML''' tab, under SAML Settings, 
** '''Single sign-on URL''':     https://alias.smartsimple.com/SAML2/
*** check on the tick box: Use this for Recipient URL and Destination URL
** '''Recipient URL''':     https://alias.smartsimple.com/SAML2/
** '''Destination URL''':     https://alias.smartsimple.com/SAML2/     
** '''Audience URI  (SP Entity ID)''':     https://alias.smartsimple.com/SAML2/
** '''Default RelayState''': 
** '''Name ID format''': EmailAddress
** '''Application username''': Email
** settings below are default settings: 
** '''Update application username on''': Create and update
** '''Response''':     SIgned
** '''Assertion Signature''':     Signed
** '''Signature Algorithm'''  RSA-SHA256
** '''Digest Algorithm''':    SHA256
** '''Assertion Encryption''':     Unencrypted
** '''Attribute Statements'''
*** '''First name''':  user.firstName
*** '''Last name''':   user.lastName
*** '''Email''':  user.email
*** '''Department'''
*** '''Roles'''
*** '''SSOModule'''
===SAML Assertion Example===
Smartstaff
1,385
edits