Okta as IdP for wordpress

Step 1: Setup Okta as Identity Provider

Follow the steps below to configure Okta as an Identity Provider

miniorange img Configuring Okta as IdP

  • In the miniOrange SAML SP SSO plugin, navigate to Service Provider Metadata tab. Here, you can find the SP metadata such as SP Entity ID and ACS (AssertionConsumerService) URL which are required to configure the Identity Provider.
  • wordpress saml upload metadata
  • Log into Okta Admin Console. Select "Classic UI" and then Application.
  • Okta SSO-new
  • Click on Add Applications.
  • Okta SSO-1
  • Click on Create New App.
  • Click on the SAML 2.0.
  • Okta SSO-2
  • In General Settings, enter App Name and click on Next.
  • In SAML Settings, enter the following:
  • Okta SSO-3
    Single Sign On URL Enter ACS (AssertionConsumerService) URL from the Identity Provider tab of the module.
    Audience URI (SP Entity ID) Enter SP Entity ID / Issuer from the Identity Provider tab of the module.
    Default Relay State Enter Relay State from the Identity Provider tab of the module.
    Name ID Format Select E-Mail Address as a Name Id from dropdown list.
    Application Username Okta username.
  • Configure Attribute Statements and Group Attribute Statement (Optional).
  • Okta SSO-4
  • If you have integrated your Active Directory in Okta and want to map the AD groups, please make sure that you have added the OUs used to import groups.You will also need to map the memberOf
    attribute under the integrated directory’s configuration.

miniorange img Assigning Groups/People

  • After creating and configuring the app go to the Assignment Tab in Okta.
  • Here we select the peoples and groups you want to give access to log in through this app. Assign this to the people/group you would to give access to.
  • Okta SSO-5
  • After assigning the people/groups to your app, go to Sign On tab.
  • Click on View Setup Instructions to get the SAML Login URL (Single Sign on URL), Single Logout URL, IDP Entity ID and X.509 Certificate. You will need this to configure the Service Provider.
  • Okta SSO-6