Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

FileCloud can be integrated with OKTA. The Okta must be configured as an Identity Provider (IdP) and FileCloud will act as the Service Provider (SP).  The following steps must be followed to configure FileCloud with Okta.

  1. Log in to your Okta issued URL. http://yourdomain.okta.com
  2. After successful login to Okta, go to the admin section
  3. Create a new application as shown below
    Image Modified

 


  1. In the application type, select SAML 2.0
    Image Modified

  2. Configure the Application as follows.
    Image Modified

 

...

    1. Set Single sign on URL

...

    1. tp the FileCloud assertion URL http://<your domain>/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp
    2. Set Audience URI (SP Entity ID

...

    1. ) to http://<your domain>/simplesaml/module.php/saml/sp/metadata.php/default-sp
    2. Set Default Relay State

...

    1. to http://<your domain>/auth/samlsso.php
      The attribute statements must be set as shown in the screenshot.  These attribute names must match the names set in the FileCloud admin screen - Settings SSO parameters for Username, Email, Given Name and Surname.

...

    1. Image Modified

...



  1. In the following screen set the FileCloud as an Internal App.

...


  1. Image Modified

...



  1. Click the FInish button.
  2. Click "View Setup Instructions" to get the details to configure FileCloud SSO.

 

  1. Image Modified

...


  1. The How to Configure SAML 2.0 for MyIdp Application screen opens.
  2. Get the details to configure FileCloud from this screen.

...

  1.   

      ...

        1. Idp End Point URL in FileCloud admin (Settings) - Must be the same as the entity ID value from the IDP Meta Data value in the screen (See Screen Shot below)

      ...

        1. Download the Certificate. Copy the certificate  file and

      ...

        1. rename to saml.crt. Copy this file in the FileCloud server in the following place <FileCloud WEB ROOT>/thirdparty/simplesaml/cert

      ...

        1. The

      ...

        1. metadata in this screen must match the IdP meta data in FileCloud Admin Settings - SSO - Idp Metadata.


      Copy the ENTITY ID field from the Metadata text box on OKTA and use that for Idp End Point URL in FileCloud admin UI interface.


      Inline image 1

       

      Image Modified

       

      Add the user under the people tab in Okta.

      The configuration from FileCloud side should be in 'Settings > sso' as follows (in 'idP End Point URL' you should make 'Identity Provider Issuer') :



      Once the application is created and FileCloud is configured you can start using the Single Sign On with Okta from FileCloud