Okta
This article gives the steps to configure Okta as the identity provider for NocoDB.
NocoDB, Retrieve SAML SSO Configuration details
- Go to
Account Settings. - Select
Authentication (SSO). - Click the
New Providerbutton. - In the dialog, type a
Display namefor the provider. The login page shows the provider with this name. - Copy the
Redirect URL&Audience / Entity ID. You need these values later to configure the identity provider.

Okta, Configure NocoDB as an Application
- Sign in to your Okta account.
- Go to
Applications>Applications. - Click
Create App Integration.
- Go to
- The
Create a new app integrationdialog opens. For the Sign-in method, selectSAML 2.0. - On the
Create SAML Integrationpage, in the General settings, type a name for your app. ClickNext. - In the
Configure SAMLsection:- In the
Single sign-on URLfield, enter theRedirect URLfrom NocoDB. - In the
Audience URI (SP Entity ID)field, enter theAudience URIfrom NocoDB. - From the
Name ID formatoptions, selectEmail Address. - From the
Application user-nameoptions, selectEmail. - Click
Next.
- In the
- In the final step, complete any additional information. Click
Finish. - On your application's homepage:
- Go to the
Sign-ontab. - From the
SAML 2.0section, copy theMetadata URL.
- Go to the
- Go to the
Assignmentstab. ClickAssignto assign people or groups to this application.
NocoDB, Configure Okta as an Identity Provider
- Go to
Account Settings>Authentication (SSO)>SAML. - In the "Register SAML Identity Provider" dialog, enter the
Metadata URLfrom the step above. You can also configure the XML directly. - Click
Save.

Users now see the Sign in with <SSO> option on the sign-in page.

Post sign-out, refresh page (for the first time) if you do not see Sign in with SSO option
For more common questions and troubleshooting, see our SSO FAQ.
Availability
- SAML SSO is available on NocoDB Cloud (Business plan and above) and on licensed self-hosted deployments (Business plan and above). For access, reach out to sales team.
- On the Business plan, the SSO configuration menu is in the workspace sidebar, at Settings > Single Sign-On (SSO). For more details, refer here.
- Domain Verification Required for Cloud Plans: Verify your domain in NocoDB before you configure SAML SSO. Cloud Business and Enterprise plans both need this. Only users with email addresses from verified domains can sign in with SSO. For details, see Domain Verification.
Last updated on
Latest product updates?See Changelog