The integration with Okta lets you use Okta as your single sign-on and multi-factor authentication service to access Kadence (formerly Chargifi) Cloud. This adds an extra layer of security for our customers.
For users to be able to log in to Kadence with their Okta account, user accounts need to be created in Kadence with the same email address as their Okta user.
This article covers:
Prerequisites:
- You must have an Okta license
- You must be a global admin in Kadence
- You must have access to an Okta admin account
Getting the Required Information in Okta
To get the information you require from Okta to set up the SSO feature, do the
following:
- Sign into your Okta organisation as a user with administrative privileges
- Choose "Admin" on the upper right of the portal page
- Copy the "Org URL" from the top right corner of the dashboard
Note: If you can't find it try choosing the Developer Console view from
the top left menu - Go to "Applications" > "Add Application"
- Select "Web" and choose "Next"
- Fill in the "Application Settings" as follows:
- Name: Kadence OIDC
- Login redirect URLs: https://auth.chargifi.com/sso/authenticate
- Logout redirect URLs: https://auth.chargifi.com/en/logout
- Grant type allowed: Client Credentials and Implicit (Hybrid)
- Choose "Done"
- Choose "Edit" and make the following changes:
- Under "Allowed grant types", deselect the checkbox Allow Access Token with
implicit grant type - Change "Login initiated by" to either Okta or App
- Under "Application visibility", select the checkbox Display application icon to
users - Under "Login flow", ensure the radio button Redirect to app to initiate login
(OIDC Compliant) is selected - Change "Initiate login URL" to: https://auth.chargifi.com/sso/okta/<KADENCE_SSO_ALIAS>
Note: You need to pick a name and enter it in place of <KADENCE_SSO_ALIAS> indicated above. This will form part of your personalised SSO login URL to Kadence via Okta.
- Under "Allowed grant types", deselect the checkbox Allow Access Token with
- Choose "Save"
- Under the "Client Credentials" section, copy the "Client ID" and "Client Secret"
Integrate Okta with Kadence Cloud
- Go to the Kadence web app > "Settings" in the lower left-hand corner > "Integrations" > "SSO" > "Okta" > "Set Up Single Sign-On"
- Click "Add Okta SSO Integration"
- Enter the name you used as an alias
- Paste your "Client ID" and "Client Secret" into the corresponding fields
- Paste your "Org URL" in the "Base URL" field
- Choose "Create and Test Integration"
You will see a confirmation message at the top of your screen.
Obtaining Single Sign-On (SSO) Access
You can manage your Single Sign-On (SSO) Integrations yourself as long as you are a global admin. Otherwise, please contact your global admin for assistance.
That's it! You are all ready to go.
Comments
0 comments
Please sign in to leave a comment.