Table of Contents
SAML Integration via Okta
Updated by Billy Dowell
SAML integration via Okta
This article outlines how to configure your account to authenticate via a SAML provider such as Okta.
Only an option on Enterprise plans.
Work is still happening to have Great Question listed in the Okta Catalog and published to the OIN. For the time being, the application will have to be created manually.
Register application in Okta
Create application in Okta
- In Okta, navigate to the Applications tab and click Applications.
- Click Add application > Create new app.
- In the dialog, select SAML 2.0 as the sign on method.
- Click Create.
Okta Application Settings
- In the General Settings, enter the application name (Great Question) and add an optional logo.
- Click Next.
- On the SAML Settings page:
- Add the following URL for the Single sign on URL: https://greatquestion.co/users/saml/auth
- Add the following URL for the Audience URI: https://greatquestion.co/users/saml/metadata
- For Name ID format, select EmailAddress.
- For Application username, select Email.
- Click Next.
- Click Finish.
Attribute mapping
- Map
first_name
touser.firstName
. - Map
last_name
touser.lastName
. - Map
email
touser.email
.
Setting up application in Great Question
Obtain credentials for Great Question from Okta
- Once the application is created, complete the following steps:
- From the Great Question application in Okta, click Sign on.
- From here, click View Setup Instructions.
- These are the credentials you need:
Add credentials to Great Question
- Navigate to greatquestion.co, if not already there.
- Click on your name/profile image in the bottom left corner.
- Click on Team, and then Settings.
- In the authentication form:
- Toggle on SAML Authentication.
- Add Identity Provider Single Sign-On URL to Idp sso target url.
- Add Identity Provider Issuer to Idp entity.
- Add X.509 Certificate: to Idp cert.
- Click Update Account.
SAML is now set up on your Great Question account. 🙌
Signing in via SAML
- Any user with access to Great Question in your Okta will automatically be able to sign in from their Okta profile. By default, they will be provisioned with a free observer account.
- Users that already have accounts on Great Question can connect Okta and sign in via https://greatquestion.co/sso.
Great Question Logo
The GQ logo below can be downloaded for your integration.
Have Questions?
Please reach out to us in the chat or at [email protected]!