Okta

This article gives the steps to configure Okta as the identity provider for NocoDB.

NocoDB, Retrieve SAML SSO Configuration details

  1. Go to Account Settings.
  2. Select Authentication (SSO).
  3. Click the New Provider button.
  4. In the dialog, type a Display name for the provider. The login page shows the provider with this name.
  5. Copy the Redirect URL & Audience / Entity ID. You need these values later to configure the identity provider.

SAML SSO Configuration SAML SSO Configuration SAML SSO Configuration

Okta, Configure NocoDB as an Application

  1. Sign in to your Okta account.
    • Go to Applications > Applications.
    • Click Create App Integration.
  2. The Create a new app integration dialog opens. For the Sign-in method, select SAML 2.0.
  3. On the Create SAML Integration page, in the General settings, type a name for your app. Click Next.
  4. In the Configure SAML section:
    • In the Single sign-on URL field, enter the Redirect URL from NocoDB.
    • In the Audience URI (SP Entity ID) field, enter the Audience URI from NocoDB.
    • From the Name ID format options, select Email Address.
    • From the Application user-name options, select Email.
    • Click Next.
  5. In the final step, complete any additional information. Click Finish.
  6. On your application's homepage:
    • Go to the Sign-on tab.
    • From the SAML 2.0 section, copy the Metadata URL.
  7. Go to the Assignments tab. Click Assign to assign people or groups to this application.

NocoDB, Configure Okta as an Identity Provider

  1. Go to Account Settings > Authentication (SSO) > SAML.
  2. In the "Register SAML Identity Provider" dialog, enter the Metadata URL from the step above. You can also configure the XML directly.
  3. Click Save.

SAML SSO Configuration

Users now see the Sign in with <SSO> option on the sign-in page.

SAML SSO Configuration

Post sign-out, refresh page (for the first time) if you do not see Sign in with SSO option

For more common questions and troubleshooting, see our SSO FAQ.

Availability

  • SAML SSO is available on NocoDB Cloud (Business plan and above) and on licensed self-hosted deployments (Business plan and above). For access, reach out to sales team.
  • On the Business plan, the SSO configuration menu is in the workspace sidebar, at Settings > Single Sign-On (SSO). For more details, refer here.
  • Domain Verification Required for Cloud Plans: Verify your domain in NocoDB before you configure SAML SSO. Cloud Business and Enterprise plans both need this. Only users with email addresses from verified domains can sign in with SSO. For details, see Domain Verification.

Last updated on

Latest product updates?See Changelog
Stay in the loop? Follow us onLinkedInLinkedInYouTubeYouTubeXX