Set up SAML SSO with Okta
Okta asks for the same two values as everyone else, just under its own field names. This assumes SSO is already on, from SAML setup.
- Where to find it
- Organization → Integrations → SSO
- Who can use it
- Organization Admin in DMARCS; an admin who can create app integrations in Okta
- Time needed
- 10 minutes
- You will need
- Admin access to your Okta org
Create the app integration
- Start the SAML app
In the Okta Admin Console, go to Applications → Applications → Create App Integration, choose SAML 2.0, and click Next.
- Name it
On General Settings, name the integration DMARCS and continue to Configure SAML.
Point it at DMARCS
- Single Sign-On URL
https://your-domain.com/api/api.php?action=saml_acs- Audience URI (SP Entity ID)
https://your-domain.com/api/saml/metadata
Leave the rest of Configure SAML on its defaults.
Map the email attribute
Set Name ID format to EmailAddress (or leave it Unspecified if Okta usernames in your org are already email addresses). Attribute Statements are optional; DMARCS only needs the email.
Give DMARCS Okta's details, then test
- Get the metadata into DMARCS
Finish the wizard, open the app's Sign On tab, and download the IdP metadata (or copy the metadata URL). Upload the file on DMARCS's SSO page with Upload Metadata.
- Assign access
Under Assignments, assign the people or groups who should get SSO.
- Enable and test
Switch on Enable SSO on DMARCS's SSO page and save, then sign in from a private browser window.
Still need a hand?
Email support@dmarcs.com, call +971 4 240 4441, or open a ticket from Support inside the app.