Using Thordata to set up Okta SSO
Requirements:
- An Okta organization account with administrator privileges. 
- A Thordata account with administrator privileges. 
Steps:
- Steps:In your Okta Admin Dashboard, go to Applications > Applications. ( - https://[your_domain]-admin.okta.com/admin/apps/active)
- Click Create App Integration. 

- Select OIDC - OpenID Connect as the Sign-in method. 
- Choose Web Application as the Application type, then click Next. 

- You will be redirected to a new Web App Integration page. Here, you can name your app integration (we recommend using "Thordata Control Panel"). 
- Under Grant type, select Implicit and Authorization Code [Optional]. 

- Go to the Thordata Control Panel. 
- Open the OKTA Configuration dialog. 

- Copy the Sign-in redirect URI. 

- Paste it into the corresponding field in the new app settings in Okta. 

- Repeat the same process for the Sign-out URI. 
- Under Assignments, select the desired access level. 

- Click Save. 
- You should now be on the settings page for the new app integration. - Copy your Client ID, Client Secret, and Okta Domain to the OKTA settings dialog in the Thordata Control Panel. 

Okta Domain:


- You should go to Security-API-Tokens to create your token 




Then copy it into the OKTA settings dialog in the Thourdata control panel.

- Click "Activate". If you select "Allow everyone access", skip step 17. 
- Click Activate. (If you selected "Allow everyone access," skip step 16.) 
- Go to the Assignments tab and assign the users permitted to use this integration. 

- Go to the Thordata settings page and ensure all required users are displayed. Note: We are currently working on providing user support – you should manage this manually for now. 

The following steps are optional. They enable your users to initiate authentication from their dashboard or the Okta Chrome extension.
- Scroll down to General Settings and click Edit. 
- Configure the following settings: * Login initiated by: Okta or App * App visibility: Display application icon to users * Login flow: Redirect to app to initiate login (OIDC compliant) 
Copy the Initiate login URI from the Control Panel.


- Save the changes. The integration is now ready. 
Important Notes:
- The Okta Domain should be the one that appears in your app integration settings (e.g., - yourcompany.okta.com), not the one you see as an administrator (e.g.,- yourcompany-admin.okta.com).
- Ensure the credentials provided to Thordata are correct, as we cannot verify them personally. 
- The Sign-in redirect URI is mandatory for the SSO functionality to work. 
- The Initiate login URI is required if you want to use the feature from the Okta Chrome extension or the Okta dashboard. 
Last updated
Was this helpful?