This block + 6,000 more — yours with Pro

Account Sso Config

86/100
Docs

SSO Configuration

Configure SAML single sign-on for your organization

Connected
Identity Provider
Entity ID (Issuer)
SSO URL (Login Endpoint)
X.509 Signing Certificate
okta-signing-cert.pemValid

SHA256:2f:8a:3c:d1:e7:9b:45:6f:0a:c8:d2:e4:f1:b3:a7:c9

Expires Dec 15, 2027

Attribute Mapping
AttributeSAML Claim URIReq.
emailUser email address
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddressYes
firstNameUser first name
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/givennameYes
lastNameUser last name
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/surnameYes
roleUser role for RBAC
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/roleNo
departmentUser department
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/departmentNo
Enforce SSO

Require all non-admin members to sign in via SSO. Password login will be disabled.

Last tested Apr 4, 2026 at 15:32