Okta SAML SSO

How to create an Okta application to connect to the Nebulock portal via Single Sign On (SSO).


📘

Refer to Okta documentation to create integration applications.

  1. Provide your Allowed Domain for SSO to the Nebulock team.

  2. The Nebulock team will provide you with the following:

    1. An Audience URI
    2. An ACS URL
  3. Log into Okta with an account that has administrative privileges, and navigate to the Admin Console. From the there, navigate to Dashboard -> Applications.

  1. Then click Create App Integration.

  2. Select SAML 2.0 and continue.

  3. Give the application a name (e.g. Nebulock Portal) and continue. Optional: You can request the Nebulock Icon to add as the app logo.

  4. SAML Settings should have the following information entered:

    1. For Single sign-on URL, set the value to the ACS URL provided to you by Nebulock.
    2. For Audience URI (SP Entity ID), set the value to the Audience URI provided to you by Nebulock.
    3. Name ID format: Set to EmailAddress.
    4. Application username: Set to Email.
  5. Attribute Statements needs the following statements:

    1. Name: firstName | Name Format: Basic | Value: user.firstName
    2. Name: lastName | Name Format: Basic | Value: user.lastName
    3. Name: id | Name Format: Basic | Value: user.id
  6. Once these fields are completed, click Continue to finish creating the application.

  7. You'll be redirected to the details of the new application on the Sign On tab, which will have a Metadata URL to copy (you can reference back to this URL later if needed).

  8. Share the Metadata URL along with the email domains that you use in Okta for user accounts to the Nebulock team via Slack or email to complete the Okta integration.

  9. Once the Nebulock team has confirmed the integration is completed, you will be able to use Okta to log into the Nebulock portal.

  10. To allow organization users to use Okta SSO to access the Nebulock portal, add them to the Nebulock application under the Assignments tab in Okta.