Okta Integration Network - Production SSO App
07/2023
Overview
You can enable SSO from your organization's Okta instance to your Identity Intelligence tenant by installing the Oort Identity Security App from the Okta App Catalog.
Supported Features
Service Provider (SP) - Initiated Authentication Flow - When a user is logging in from the Identity Intelligence platform
Requirements
To configure Identity Intelligence SSO through Okta, you will need:
Admin Access to an Okta tenant
Configuration Steps
Configuring Okta as the identity provider for Oort will redirect users logging in to your Identity Intelligence tenant to an Okta logic screen. After authentication, the users will be redirected back to the Identity Intelligence platform. You will also be able to add an "Identity Intelligence" button to your users' "My Apps" page in Okta.
Add the Identity Intelligence App to Okta
Login to your organization’s Okta tenant.
Navigate to the Admin console
Navigate to Applications > Applications > Browse App Catalog. Search for Identity Intelligence (Oort) Identity Security, and then click Add
Enter an Application Label in General Tab Note - This is the name under which the Identity Intelligence (Oort) Identity Security app will appear in your Okta dashboard
Click Done
Go to the Sign On tab of the Identity Intelligence (Oort) Identity Security App
Copy the Client ID and Client Secret.
Note: The Client ID is a public identifier for the client that is required for all OAuth/OIDC flows. The Client Secret is a private identifier which you should not share or broadly distribute.
Assign users to the Identity Intelligence Identity Security App
Assign users (ideally through groups) to the Identity Intelligence (Oort) Identity Security App:
Go to Applications > Identity Intelligence (Oort) Identity Security > Assign and then assign to either the target people or group
Send the Client ID and Client Secret to Identity Intelligence Support
If you are not already communicating directly with a member of the Identity Intelligence Customer Success or Support team, please reach out to cii-support@cisco.com to securely transfer the Client ID and Client Secret via a means of secure communication of your choice.
Logging in to your Identity Intelligence Tenant with Okta SSO
Once Identity Intelligence Support has completed the configuration within your tenant, they will provide you with a tenant-specific logon URL which references your Okta SSO connection.
Alternatively, you can login via the following method:
In a browser, navigate to https://dashboard.oort.io
Enter your tenant's organization name
Click the “Continue with CompanyABC Okta SSO” option
You will be redirected to Okta to complete authentication
After successful authentication with your Okta tenant, you will be redirected to the Identity Intelligence dashboard
Last updated