Note: Single Sign-On features are available to customers at the Enterprise or Education Plus tiers.
To enable Single Sign On with Okta we first need to create a SAML application. To create a SAML based application please follow the instructions on the Okta documentation page here:
https://developer.okta.com/standards/SAML/setting_up_a_saml_application_in_okta/
Note: Make sure to switch to the classic UI to select SAML 2.0 application
For the SyncSketch-specific SAML settings, please use the following:
Important: Please copy the links as the trailing slash is important for it to work:
https://www.syncsketch.com/metadata/
https://syncsketch.com/complete/saml/
In the "Default RelayState" please enter the value provided by the SyncSketch team
Encryption SAML Assertion
To further ensure that all the communication is encrypted properly we need to crack open the "Advanced Settings" and upload the Encryption Certificate.
You can download the encryption certificate file from the SAML Settings page in your SyncSketch Workspace.
Note: Okta can be tested without the certificate while setting up the service.
Once the application is setup, there is one last step to complete before your users can login to SyncSketch using SSO.
Enter the "Identity provider metadata" into the SAML Settings page in your SyncSketch Workspace.
Please see Configuring SSO in your Workspace Settings to complete the setup in SyncSketch.
Enabling Single Sign On with Okta can make it difficult to invite external reviewers who are not provisioned in Okta. Contact support for details on how to approach this.
Looking forward to having you on board :)