This topic will walk you through how set up an Okta SSO/SAML integration. This includes how to set up Okta in Ironclad, add new and existing users to Ironclad, and test your setup.
Disclaimer: If you change your domain, your access to Ironclad is prohibited. Contact Support (support@ironcladhq.com) for assistance before migrating a domain.
Skip To:
- Set Up Okta in Ironclad
- Add New Users in Okta
- Add Existing Users in Okta
- Test Okta Set Up
- Add New Users to Ironclad
Set Up Okta in Ironclad
- Log in to Okta as an admin. Verify you are in the Classic UI.
- Click the Admin button located in the top right corner.
- In the top navigation bar, click the Applications tab, and then click Add Application.
- Search for and select Ironclad. Click Add.
- In the Application label field, enter Ironclad.
- Select your Application Visibility. Click Done.
- Navigate to the Sign On tab, and then click View Setup Instructions. Follow Okta’s instructions to complete the configuration.
- To find the Identifier URL and Redirect URL, navigate to Ironclad, and then click CompanySettings > Integrations > SAML. Under IdP Configuration, click Show Additional IdP Settings. The URLs display.
- To find the Identifier URL and Redirect URL, navigate to Ironclad, and then click CompanySettings > Integrations > SAML. Under IdP Configuration, click Show Additional IdP Settings. The URLs display.
- Once the configuration is complete, click the Assignments tab to start adding existing users to the application or inviting new users.
Add New Users in Okta
- In the top navigation bar, click the Directory tab > People, and then click Add Person.
- Enter the user’s information and select Send user activation email now. Click Save.
- Select the user you just created, and then click Assign Applications.
- Click Assign located next to the application you created.
- Click Save and Go Back, and then click Done.
- In the user’s email, click the Okta invitation and create an account for the user. The user can then log in to Ironclad.
- Alternatively, after the user creates their Okta account, you can send them a SSO new user invitation from Ironclad’s Company Settings > Admin. Make sure the user does not already exist in the system. If they do, delete the user first. The user can then click the Sign In link from the Ironclad invitation and enter their Okta credentials. From there, they are redirected and automatically logged in to Ironclad.
Add Existing Users in Okta
- In the top navigation bar, click the Assignments tab.
- In the Assign dropdown, click Assign to People.
- Click the Assign button located next to the users you want to add. Click Save and Go Back.
- Click Save and Go Back, and then click Done.
Test Okta Set Up
- In Okta, navigate to the Users tab.
- Provision a test user or colleague to access Ironclad. This user cannot be listed in the Ironclad “Everyone” group.
- Select the application you created and click Save.
- Instruct the newly provisioned user to click their invitation email to log in to Ironclad.
- If the user is able to log in and see the Ironclad Dashboard, the Okta configuration is a success. Reach out to your LE or CSM POC or contact support@ironcladapp.com for assistance migrating existing Ironclad users from Password Login to SSO Login.
- If the user receives an error message, follow our troubleshooting guide.
Add New Users to Ironclad
We provide a First-Time Sign-In URL that can be found in two places:- On the SAML configuration setup page.
- Click on your name located in the top right corner of Ironclad. Navigate to Company Settings > Users.