Okta Integration

What is Okta

Okta's core products include Single Sign-On, Multi-Factor Authentication, Lifecycle Management, Universal Directory, API Access Management, and more. These products are designed to manage and secure user access to technology and applications, making it a crucial tool for businesses in the modern digital landscape.

Before getting started

  • SaaS Alerts requires the client domain in the format of https://yourdomain.okta.com.
  • Okta requires admin roles.

Connecting Okta to SaaS Alerts

  1. Log in to the Admin area.
  2. Navigate to Applications > Applications.
  3. Click Create App Integration.
  4. Select OIDC - OpenID Connect.
  5. Select Web Application.
  6. Name the application, select Authorization Code and Refresh Token, leave everything else as default.
  7. Add the following Sign-in redirect URIs:
    • https://saas-alerts-qa.appspot.com/products/oauth2/redirect
    • https://manage.saasalerts.com/products/oauth2/redirect 
  1. In the Assignments section, select Skip group assignment for now.
  1. Confirm immediate access with Federation Broker Mode disabled.
  2. Assign people to Okta app.
  3. Click Assign next to the desired user.
  4. Click Save and Go Back.
  5. Click Done.
  6. Add the following scopes:
    • okta.logs.read
    • okta.users.read
  1. After saving, note the Client ID and Client Secret

Monitored events

The following list of events is available for the initial release:

  • IAM Event - Authentication Success
  • IAM Event - Authentication Failure
  • IAM Event - Oauth Access Used for Foreign Application
  • IAM Event - User Logged Out
  • IAM Event - New User Added
  • IAM Event - Password Reset

NOTE  While in beta, PSA support is not available for Okta at this time.