Enable your Okta users to access Trelica with Single-Sign-On (SSO). Once you've completed this step you may wish to enable SCIM from Okta.
Create an Okta App Integration from scratch
-
Open the Okta Administration UI, select the Applications menu and click Create App Integration:
-
Choose SAML 2.0 from the dialog and click Next.
-
Enter Trelica as the App name, and upload a Trelica logo.
-
You will need the SAML Assertion Consumer Service (ACS) URL (Single sign-on URL) and SAML Entity ID (or Audience URI) from Trelica.
To find these, in a separate tab, log in to Trelica and go to Admin > Settings > Users > Single Sign-On (SSO):
-
Fill in the following fields:
Single sign-on URL Trelica SAML Assertion Consumer Service (ACS) URL Audience URI (SP Entity ID) Trelica SAML Entity ID Name ID format EmailAddress Application username Email -
Under Attribute Statements in Okta add two statements:
Name Value given_name user.firstName family_name user.lastName -
The screen should look like this:
Scroll to the bottom and click Next.
-
On the final step choose I'm an Okta customer adding an internal app.
-
Click Finish.
Configure Trelica
The final step is to set up the connection in Trelica.
-
Take a copy of the Metadata URL from Okta:
-
Switch back to the Trelica tab you opened earlier. You should have navigated to Admin > Settings > Users > Single Sign-On (SSO).
-
Click the New button under SAML providers.
-
Enter a Name (Okta) and choose Metadata from URL.
-
Paste in the Metadata URL you took from Okta:
-
Click Create.
Test the connection
You can now test the Okta connection.
-
Log out of Trelica.
-
Assign yourself to the Trelica application in Okta.
-
Go to your My Apps page and click on the Trelica tile:
You should be logged in to Trelica successfully.
Troubleshooting
Trelica user accounts are being created using a username rather than an email address
-
Find the Trelica application, open the Sign on tab and click Edit:
-
Scroll down to the Credentials Details section and make sure Application username format is set to Email.
Using the Okta App Catalog app
If you wish to use the App Catalog app, here's how:
Open the Okta Administration UI, select the Applications menu and click Browse App Catalog.
-
Search for Trelica and select the Okta Trelica application. Click Add next to the search result listing.
-
The Trelica application is added. Click Done.
Finalize configuration in Okta
-
Go to Sign On and click Edit.
-
Scroll down to Advanced Sign-on Settings.
You will need to fill in the ACS URL field. This is provided by Trelica.
-
In a separate tab, log in to Trelica and go to Admin > Settings > Users > Single Sign-On (SSO):
-
Copy the SAML Assertion Consumer Service (ACS) URL value and paste it into the Okta ACS URL field.
-
Set the Application username format to Email:
-
Click Save.
Comments
0 comments
Please sign in to leave a comment.