Okta SSO for Apono logins

Enable your organization to use single sign-on to log in to Apono

Implementing Okta Single Sign-On provides seamless and secure authentication across various applications. Centralized identity management reduces password fatigue and increases overall security for your organization.

This guide shows you how to enable SSO for logging in to Apono.



Prerequisites

Item Description
Okta developer account Account with administrative access to the Okta platform


Enable Okta SSO

⚠️

Use the following resources as needed:


Follow these steps to create a SAML integration and enable Okta SSO:

  1. From the side navigation in the Okta Admin Console, click Applications > Applications. The Applications page opens.

  2. Click Create App Integration. The Create a new app integration popup window appears.

  3. Select SAML 2.0.

  4. Click Next. The General Settings tab appears.

  5. Enter an App name for integration.

  6. Click Next. The Configure SAML tab appears.

  7. In the Single sign-on URL field, enter https://login.apono.io/auth/saml/callback.

  8. In the Audience URI (SP Entity ID) field, enter Apono.

  9. From the Name ID format dropdown menu, select EmailAddress.

  10. From the Application username dropdown menu, select Okta username.

  11. Under Group Attribute Statements (optional), map your Okta groups to Apono roles by defining a group attribute statement.

    FieldValue
    Namegroup
    FilterStarts with
    Enter the name of the group in the filter text field
  12. Click Preview the SAML Assertion. A new tab opens showing the XML that will be used in the assertion.

  13. Copy the SAML assertion.

  14. Click Next. The Feedback tab appears.

  15. Select an option.

  16. Click Finish.

  17. Send the following information to Apono support:

    • XML file (SAML assertion) containing the SSO integration metadata generated by the Okta App Integration Wizard when you completed the setup
    • Domains that your organization allows to log in to Apono

When your Okta SSO integration is available, you will be able to use SSO to log into Apono with your company domain.