Versions Compared
Key
- This line was added.
- This line was removed.
- Formatting was changed.
...
This guide is intended to help configure single sign on / SAML 2.0 for Lucidity Software to be able to authenticate against you Okta users.
Create a Lucidity app instance
Login into your account Okta as an Admin and and navigate to Applications
Click Create New App
Image AddedSelect the Platform type as Web and the Sign on method as SAML 2.0
Image AddedClick Create
Image AddedApp name and logo can be anything you want as long as you remember whats it for, we recommend calling your app “Lucidity Software” and using the Lucidity icon provided:
Image AddedOnce you have done this click Next
Enter the following details provided below and leave the rest as the default value:
NOTE: Replace {site-name} with your Lucidity site nameUnder the General section:
Single sign on URL
https://{site-name}.luciditysoftware.com.au/simplesaml/module.php/saml/sp/saml2-acs.php/{site-name}Audience URI (SP Entity ID)
https://{site-name}.luciditysoftware.com.au/simplesaml/module.php/saml/sp/metadata.php/{site-name}Default RelayState:
https://{site-name}.luciditysoftware.com.au/home/login/lucidityintranet/completesso/{site-name}
NOTE: This guide is intended to help configure single sign on / SAML 2.0 for Lucidity Software to be able to authenticate against you Okta users.
...
Create a Lucidity app instance
Login into your account Okta as an Admin and and navigate to Applications
Click Create New App
...
- Image Added
Select the Platform type as Web and the Sign on method as SAML 2.0
Image ModifiedClick Create
...
- Image Added
App name and logo can be anything you want as long as you remember whats it for, we recommend calling your app “Lucidity Software” and using the Lucidity icon provided:
...
- Image Added
Once you have done this click Next
Enter the following details provided below and leave the rest as the default value:
...
NOTE: Replace {site-name} with your
...
Lucidity site name
Under the General section:
Single sign on URL
https://{site-name}.luciditysoftware.com.au/simplesaml/module.php/saml/sp/saml2-acs.php/{site-name}Audience URI (SP Entity ID)
https://{site-name}.luciditysoftware.com.au/simplesaml/module.php/saml/sp/metadata.php/{site-name}Default RelayState:
https://{site-name}.luciditysoftware.com.au/home/login/lucidityintranet/completesso/{site-name}
...
NOTE: The Default Relay State URL will determine the Lucidity module that
...
user are directed to when they sign
...
into Lucidity through Okta.
Under the Attribute statements:
Add the following:
Name: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/upn
Name Format: Unspecified
Value: user.login
...
NOTE: The value needs to match the username naming convention used for users in Lucidity. If an email is used only the first part is required (eg bob.
...
smith@somewhere.com becomes bob.smith for authentication)
...
Image Added
Click Next
Answer Okta’s question on how the App is going to be used
Lastly you will need to add the users to the system who will be allowed to login to the app
(see Okta’s instructions)
Providing the
...
Metadata to Lucidity
In order to complete the set up Lucidity requires the IdP metadata
Navigate to the Okta Lucidity app you created above if you are not already there
...
- Image Added
Click on the Lucidity app and navigate to the Sign On section
...
- Image Added
Right click on the Identity Provider metadata link in the SAML 2.0 section and copy the link
Send the link to your contact at Lucidity
...
NOTE: The link should look something like:
...
http://{okta-site-name}.okta.com/app/{okta-app-id}/sso/saml/metadata
Once Lucidity has the IdP metadata we can finish the server set up and will notify you once complete
In this page:
Table of Contents |
---|
Related pages:
Child pages (Children Display) | ||
---|---|---|
|