How to Configure Okta SAML Single Sign-On (SSO) Authentication with Aperture

How to Configure Okta SAML Single Sign-On (SSO) Authentication with Aperture

18430
Created On 09/25/18 17:27 PM - Last Modified 03/01/23 18:00 PM


Symptom


Enabling SSO on Aperture requires information from your IDP.  The following section provides details on how to add Aperture as an Application on your IDP and then using information from your IDP to configure SSO on Aperture. Okta is used as IDP.

Resolution


Configuring IDP

Click here to get the detailed steps to setup your Identity Provider configuration.

  1. When you reach Configure SAML section, use the following information:
SAML Settings

Where "abc" is your tenant name.

Screen Shot 2018-04-17 at 5.12.22 PM.png

  1. Continue to run the configuration wizard until you reach the Settings section:

Screen Shot 2018-04-17 at 5.13.45 PM.png

  1. From here, click View Setup Instruction, then make a note of the following:
    • Identity Provider Single Sign-On URL
    • Identity Provider Issuer:
    • Download X.509

Configuring Aperture:

Only the Super Admin can configure SSO on Aperture. Perform the following steps on Aperture:
  1. Enable SSO by going to Setting > Single Sign On and enter IDP provider ID, certificate, and Identity Provider SSO URL.

Screen Shot 2018-04-17 at 5.17.28 PM.png
 

  1. Some IDP does not check for certificate validation. In that case, un-check Require valid certificate for login.
  2. Enter the information you gathered from the previous section Configuring IDP.
 
  1. Add a new user for SSO by going to Settings > Admin Accounts, then click Save.

Screen Shot 2018-04-17 at 5.18.45 PM.png



Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClFmCAK&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language