You can configure SAML using Okta in Cloud Rewind.
Step 1: Create a Cloud Rewind Application
-
Set the Single Sign-On URL to the Cloud Rewind ACS URL.
-
Paste the Entity ID from Cloud Rewind.
-
Configure the below attributes as follows:
-
Name ID Format: Email address
-
Application User Name: OKTA username
-
Update Application Username On: Create and Update
-
-
Attribute Statement
-
Name: email
-
Name Format: Basic
-
Value: user.email
-
-
Group Attribute Statements (Optional)
-
Save the configuration.
-
Navigate to Sign-On Settings.
-
Copy the Issuer Value and paste it under Cloud Rewind Entity ID.
-
Paste the Sign-On URL under the Cloud Rewind ACL URL.
-
Download the Certificate, copy the cert value, and paste it into the Cloud Rewind certificate section.
-
Assign desired Roles and click configure.
-
Step 2: Configure SCIM in Cloud Rewind with Okta
Under Application Provisioning, do the following:
-
Enable the SCIM option.
-
Copy and paste the Base URL from Cloud Rewind.
-
Set the Unique Identifier Field to "email".
-
Enable the following Provisioning Actions:
-
Import New Users and Profile Updates
-
Push New Users
-
Push Profile Updates
-
-
Choose Authentication Mode as HTTP Header.
-
Generate a token in Cloud Rewind and paste it under HTTP Header Authorization.
-
Save the changes.
-
After saving the SCIM configuration edit, enable the below-listed items:
-
Create Users
-
Update User Attributes
-
Deactivate Users
-
-
Under Assignments, click "Assign" and select the users.