-
Notifications
You must be signed in to change notification settings - Fork 37
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
DOC-884: Update Okta Documentation for SAML #1634
Conversation
✅ Deploy Preview for docs-spectrocloud ready!
To edit notification comments on pull requests, go to your Netlify site configuration. |
docs/docs-content/user-management/saml-sso/palette-sso-with-okta.md
Outdated
Show resolved
Hide resolved
docs/docs-content/user-management/saml-sso/palette-sso-with-okta.md
Outdated
Show resolved
Hide resolved
docs/docs-content/user-management/saml-sso/palette-sso-with-okta.md
Outdated
Show resolved
Hide resolved
docs/docs-content/user-management/saml-sso/palette-sso-with-okta.md
Outdated
Show resolved
Hide resolved
<br /> | ||
|
||
:::info | ||
Due to some browsers that add additional formatting and spacing for XML data, you can run the below command to copy the contents to your clipboard. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[spectrocloud.ableism] Avoid using ableism terms. Use 'issue' instead of 'run'.
docs/docs-content/user-management/saml-sso/palette-sso-with-okta.md
Outdated
Show resolved
Hide resolved
docs/docs-content/user-management/saml-sso/palette-sso-with-okta.md
Outdated
Show resolved
Hide resolved
Images automagically compressed by Calibre's image-actions ✨ Compression reduced images by 32.9%, saving 329.99 KB.
480 images did not require optimisation. |
…rocloud/librarium into will-okta-saml-documentation
|
||
<br /> | ||
|
||
6. Switch back to your Okta Admin console and paste the copied value to the **Single sign-on URL** and **Audience URI (SP Entity ID)**. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
|
||
<br /> | ||
|
||
6. Switch back to your Okta Admin console and paste the copied value to the **Single sign-on URL** and **Audience URI (SP Entity ID)**. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Terms] Use 'admin' instead of 'Admin'.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Awesome PR @wcrum . I'm gonna setup a short meeting to go over the things missing to get this over the fence. Thanks again for writing this up.
docs/docs-content/user-management/saml-sso/palette-sso-with-okta.md
Outdated
Show resolved
Hide resolved
docs/docs-content/user-management/saml-sso/palette-sso-with-okta.md
Outdated
Show resolved
Hide resolved
- renamed all files based on standard - separated oidc / saml documentation - added validation / team creation for okta saml
@karl-cardenas-coding updated based on review on call. |
@@ -32,4 +32,7 @@ Enable SSO by following our [Enable SSO in Palette](enable-saml.md) guide. | |||
- [Enable SSO with Microsoft Active Directory Federation Service (AD FS)](palette-sso-with-adfs.md) | |||
|
|||
|
|||
- [Palette SSO with Okta](palette-sso-with-okta.md) | |||
- [Palette SSO with Okta OIDC](palette-sso-with-okta-oidc.md) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
- [Palette SSO with Okta OIDC](palette-sso-with-okta-oidc.md) | ||
|
||
|
||
- [Palette SSO with Okta SAML](palette-sso-with-okta-saml.md) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
|
||
|
||
|
||
# Enable SSO with Okta SAML |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
|
||
Single Sign-On (SSO) is an authentication method that enables users to log in to multiple applications and websites with one set of credentials. SSO uses certificates to establish and maintain a trust relationship between the Service Provider (SP) and an Identity Provider (IdP). Palette supports SSO based on either the Security Assertion Markup Language (SAML) or OpenID Connect (OIDC). | ||
|
||
The following steps will guide you on how to enable Palette SSO with [Okta Workforce Identity Cloud](https://www.okta.com/products/single-sign-on/) based on SAML. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
|
||
## Prerequisites | ||
|
||
- You need to have either a free or paid subscription with Okta. Okta provides free [developer subscriptions](https://developer.okta.com/signup/) for testing purposes. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
|
||
## Resources | ||
|
||
- [Okta Workforce Identity Cloud](https://www.okta.com/products/single-sign-on/) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
--- | ||
|
||
|
||
|
||
|
||
|
||
# Enable SSO with Okta | ||
# Enable SSO with Okta OIDC |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
@@ -28,8 +28,9 @@ The following steps will guide you on how to enable Palette SSO with [Okta Workf | |||
- If you want to use the same Okta application for OIDC-based SSO into your Kubernetes cluster itself, you need to install [kubelogin](https://github.com/int128/kubelogin) on your local workstation to handle retrieval of access tokens for your cluster. | |||
|
|||
|
|||
## Enablement | |||
## Create the Okta Application | |||
## Okta with OIDC |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
## Create the Okta Application | ||
## Okta with OIDC | ||
|
||
### Create the Okta Application |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
@@ -124,7 +125,7 @@ The following steps will guide you on how to enable Palette SSO with [Okta Workf | |||
|
|||
<br /> | |||
|
|||
## Create an Okta Authorization Server | |||
### Create an Okta Authorization Server |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
@@ -32,4 +32,7 @@ Enable SSO by following our [Enable SSO in Palette](enable-saml.md) guide. | |||
- [Enable SSO with Microsoft Active Directory Federation Service (AD FS)](palette-sso-with-adfs.md) | |||
|
|||
|
|||
- [Palette SSO with Okta](palette-sso-with-okta.md) | |||
- [Palette SSO with Okta OIDC](palette-sso-with-okta.md) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
|
||
<br /> | ||
|
||
![Create Okta Application](/saml-okta-images/user-management_saml-sso_palette-sso-with-okta-saml_create-application.png) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
|
||
<br /> | ||
|
||
![Configure Okta General Settings](/saml-okta-images/user-management_saml-sso_palette-sso-with-okta-saml_general-settings.png) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
|
||
<br /> | ||
|
||
![Copy Okta SAML Metadata](/saml-okta-images/user-management_saml-sso_palette-sso-with-okta-saml_metadata-url.png) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
|
||
### Validate | ||
|
||
1. Log in to Palette through SSO as an Okta user who is a member of the Okta application to verify SSO. If you are still logged into Palette with a non-SSO user, log out by selecting **Logout** in the **User Menu** at the top right. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🚫 [vale] reported by reviewdog 🐶
[Vale.Spelling] Did you really mean 'Okta'?
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks for the PR @wcrum
* Update Okta Documentation for SAML * Optimised images with calibre/image-actions * Fix spelling * Fix spelling * Update Okta SAML Documentation - renamed all files based on standard - separated oidc / saml documentation - added validation / team creation for okta saml * docs: fixed images names and prevented redirect need --------- Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: Karl Cardenas <karl@spectrocloud.com> (cherry picked from commit 9909d5d)
💔 Some backports could not be created
Note: Successful backport PRs will be merged automatically after passing CI. Manual backportTo create the backport manually run:
Questions ?Please refer to the Backport tool documentation and see the Github Action logs for details |
PR #1644 fixes the broken backport attempt for version 3.4 |
* Update Okta Documentation for SAML * Optimised images with calibre/image-actions * Fix spelling * Fix spelling * Update Okta SAML Documentation - renamed all files based on standard - separated oidc / saml documentation - added validation / team creation for okta saml * docs: fixed images names and prevented redirect need --------- Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: Karl Cardenas <karl@spectrocloud.com> (cherry picked from commit 9909d5d) Co-authored-by: Will <30413278+wcrum@users.noreply.github.com>
* Update Okta Documentation for SAML * Optimised images with calibre/image-actions * Fix spelling * Fix spelling * Update Okta SAML Documentation - renamed all files based on standard - separated oidc / saml documentation - added validation / team creation for okta saml * docs: fixed images names and prevented redirect need --------- Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: Karl Cardenas <karl@spectrocloud.com>
Describe the Change
This PR updates the Okta documentation with a step-by-step guide on how to configure SAML.
Review Changes
🎫 Jira Ticket SCS-1112