Skip to end of metadata
Go to start of metadata

FileCloud can be integrated with OKTA. The Okta must be configured as an Identity Provider (IdP) and FileCloud will act as the Service Provider (SP).  The following steps must be followed to configure FileCloud with Okta.

Login to your Okta issued URL. http://yourdomain.okta.com

After successful login to Okta, go to the admin section

Create a new application as shown below

 

In the application type, select SAML 2.0

Configure the Application as follows.

 

The single sign on URL is the FileCloud assertion URL http://<your domain>/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp

Entity ID is set as http://<your domain>/simplesaml/module.php/saml/sp/metadata.php/default-sp

Default Relay State is set as http://<your domain>/auth/samlsso.php

The attribute statements must be set as shown in the screenshot.  These attribute names must match the names set in the FileCloud admin screen - Settings SSO parameters for Username, Email, Given Name and Surname.

 

In the following screen set the FileCloud as an Internal App.

 

 

Click the FInish button. Click "View Setup Instructions" to get the details to configure FileCloud SSO.

 

 

Get the details to configure FileCloud from this screen.  

a. Idp End Point URL in FileCloud admin (Settings) - Must be the same as the entity ID value from the IDP Meta Data value in the screen (See Screen Shot below)

b. Download the Certificate. Copy the certificate  file and remame to saml.crt. Copy this file in the FileCloud server in the following place <FileCloud WEB ROOT>/thirdparty/simplesaml/cert

c. The meta data in this screen must match the IdP meta data in FileCloud Admin Settings - SSO - Idp Metadata.


Copy the ENTITY ID field from the Metadata text box on OKTA and use that for Idp End Point URL in FileCloud admin UI interface.


Inline image 1

 

 

Add the user under the people tab in Okta.

The configuration from FileCloud side should be in 'Settings > sso' as follows (in 'idP End Point URL' you should make 'Identity Provider Issuer') :



Once the application is created and FileCloud is configured you can start using the Single Sign On with Okta from FileCloud

 

  • No labels