Connect Okta Identity Provider

Modified on Thu, 2 Apr at 4:21 PM

Important: You need Key User rights to complete the following steps.
Attention: This guide is intended for IT personnel and supports the independent integration of Q.wiki with Okta. It reflects the status as of 21.03.2024 and will not be automatically updated if Okta changes. If you have any questions, you can consult Okta's documentation or contact the Q.wiki support team.

Overview

You need to create two applications in Okta:

  • SCIM 2.0 for user provisioning (user management)
  • OIDC for user authentication (sign-in)

Set up the SCIM application first, as it controls access to Q.wiki.

Set Up the SCIM Application

  1. Open Okta and go to Applications.
  2. Click Browse App Catalog. Browse App Catalog in Okta
  3. Search for SCIM 2.0 (OAuth Bearer Token) and add the application.
  4. Enter a name for the application, such as "Q.wiki SCIM", and confirm. Enter app name
  5. Go to Sign-On Options and select Secure Web Authentication with the first option. This will not be used later. Configure sign-on options
  6. Set the Username Format to Email.
  7. Enable the following options in the App Settings under "To App":
    • Create Users
    • Update User Attributes
    • Deactivate Users
    Enable app settings
  8. In the Attribute Mappings, you can control which attributes are transmitted. Q.wiki displays the following attributes in user profiles:
    • firstName
    • lastName
    • email
    • primaryPhone
    • postalAddress
    • department
  9. Enable Enable API integration under Integration.
  10. Copy the Tenant URL and the newly generated Secret from the Q.wiki dialog. Copy tenant URL and secret Okta credentials
  11. Paste these values into the Q.wiki dialog. Paste credentials in Q.wiki
  12. Click Test API Credentials to ensure the integration is working correctly.
  13. Assign the desired user group to the application using Assignment.

After this step, the group and its members should appear in the Q.wiki user and group management.

Set Up the OIDC Application

  1. Go to Applications and click Create App Integration. Create app integration
  2. Select OIDC and Web Application. Choose OIDC and Web Application
  3. Enter an app name, select Authorization Code as the Grant Type, and get the Sign-In Redirect URI from the Q.wiki dialog. App configuration Sign-in redirect URI
  4. Leave the assignment set to Everyone in your organization. Actual access is controlled by the SCIM application.
  5. Copy the Okta domain (for example, from your user profile) and paste it into the Q.wiki dialog. Copy Okta domain Paste Okta domain in Q.wiki

The integration of Okta with Q.wiki is now complete.

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article