Article No: 30235765861783
This article provides step-by-step instructions for configuring Single Sign-On (SSO) with SAML using Okta identity provider for Veriato.
Veriato Application Setup in Okta
Step 1: Access Okta Portal
- Login to your Okta Identity Provider account.
Step 2: Register a New Application
- Click the Admin button.
- The Sign in page opens in a new tab.
- Sign in with your account to access the Okta Admin Console.
- Go to the Applications page.
- Click on the Create App Integration button.
- The ’Create a new app integration’ window opens.
- Select SAML 2.0 and click on the Next button.
- In the General Settings tab:
- Enter the application name in the App Name field and optionally upload the logo in the Add logo field.
- Click on the Next button.
- Continue with the Configuring SAML-Based Single Sign-On steps which follow.
Configuring SAML-Based Single Sign-On
Note: This process continues from the previous steps in Enterprise Application Setup in Okta.
Step 1: Configure Basic SAML Settings
- In the new tab, login to your Veriato account as an Administrator user.
- Navigate to the Admin > Login & Access Control > SAML/SSO Configuration > Service Provider Information tab.
Step 2: Map SAML Configuration Values
- Copy Audience (Entity ID) from Veriato and paste it into Audience URI (SP Entity ID) in Okta.
- Copy ACS (Consumer) URL Validator or ACS (Consumer) URL from Veriato and paste it into the Single sign-on URL in Okta.
- In the Okta account, select the Name ID format as ‘Email Address’ and Application username as ‘Email’.
- Click on the Next button.
- Click on Finish, and the Sign On tab opens.
- In the Sign On tab, expand the More details accordion.
Configuring Identity Provider (IdP) in Veriato
Step 1: Configure Identity Provider in Veriato
- In the Veriato account go to the Identity Provider Information tab.
Step 2: Input Identity Provider Details
- Copy Sign on URL from Okta and paste it into SAML 2.0 Endpoint (HTTP) in Veriato.
- Copy the Issuer field from Okta and paste it into Issuer URL in Veriato.
- Copy the signing certificate:
a. Download the Signing Certificate.
b. Open it in Notepad.
c. Copy and paste the certificate details into the X.509 Certificate field in Veriato. - Click on the Save button.
- Switch the SAML Configuration toggle to ON.
Assigning Users for Access Control
Step 1: Assign Users in Okta
- In the Okta admin account, open the Assignments tab.
- Click on the Assign button and select the ‘Assign to People’ option.
- Assign the Application to users.
Note: The emails of Okta users need to match the email ID registered with their Veriato account.
Verify Single Sign-On (SSO) from Okta
- After the Application is assigned to users, login into the Okta individual user’s account.
- On the dashboard the Veriato Application displays.
- Click on Veriato Application, and it redirects to the Veriato portal and auto logins into the Veriato account.
Note: After enabling SSO, a user cannot log into the V1 portal using the User Name and Password.
How to Disable SSO (Single Sign-On)