Intermediate

Set up SAML with Okta and Screenly

Tutorial

Set up SAML with Okta and Screenly

Screenly offers Okta SAML support. Please see the steps below to learn how to set up Okta SAML authentication for Screenly.

Metadata Location

If this is needed, here are the steps to find your metadata:

Login to your Screenly account (only the account owner can complete this). Take the first part of the URL showing in your browser - e.g. https://YOUR-DOMAIN-HERE.screenlyapp.com/ Then append “sso/saml_metadata_view” to the end of it - e.g. https://YOUR-DOMAIN-HERE.screenlyapp.com/sso/saml_metadata_view An example from a test account would look like: https://screenly-testing-inc.screenlyapp.com/sso/saml_metadata_view This will then bring up a page with your metadata.

Step by step set up for Okta SAML authentication

  1. Step One: Register at okta.com and navigate to the admin dashboard.

  2. Step Two: Add the SAML application to your Okta account. To do so, click Applications in the sidebar, then click Create App Integration. Next, select Web from the Platform dropdown menu. Then, select SAML 2.0 and click Create.

Okta SAML setup step 2.
  1. Step Three: The next task is to set your SAML configuration. For the Single sign on URL field, please enter:

https://login.screenlyapp.com/sso/complete/saml/?idp={domain}

For the Audience URL (SP Entity ID) field, please enter:

login.screenlyapp.com

You can select Unspecified from the Name ID format drop-down menu.

  1. Step Four: Next, you must set the application’s attribute statements.

For the first attribute, enter:

name

with the value:

user.login

For the second attribute, enter:

email

with the value:

user.email

You can leave the Name format field for each attribute as Unspecified.

Okta SAML setup step 4.
  1. Step Five: On the next page, users must select the I’m an Okta customer adding an internal app option.
Okta SAML setup step 5.
  1. Step Six: After creating the okta app, users must navigate to the Sign On tab in the app settings section and click View Setup Instructions.

  2. Step Seven: Next, copy the Identity Provider Single Sign-On URL, the Identity Provider Issuer, and the X.509 Certificate to the SAML single sign-on configuration menu within your online Screenly account (Screenly ==> Settings ==> Team).

Okta SAML setup step 7.

Paste the Identity Provider Issuer in the Entity ID field. Paste the Identity Provider Single Sign-On URL in the Single sign-on URL field. Paste the X.509 Certificate in the Public Certificate field without BEGIN and END certificate lines.

In the Email Identifier field, enter:

email

In the Name Identifier field, enter:

name

Okta SAML setup step 7b.
  1. Step Eight: Assign your new Okta app to users within your Okta account.
Okta SAML set up step 8.
  1. Step Nine: You can now click Copy URL on the SAML single sign-on page within your online Screenly account and share that URL with your users.
Okta SAML setup step 9.

That completes the setup.

What is the user authorization process with SAML?

Okta SAML setup authorization.

First, the owner sends the SAML login url. This is necessary to invite a new user.

Next, the user redirects to the IdP authorization screen.

The next step is for the user to complete authorization. When the user completes IdP authorization, the IdP redirects the user back to Screenly with the IdP’s response.

The user can then register as a new user or, if the user already exists, the user can merge his or her account. This process is the same registration process as SSO.

That’s all for now!

Recent Tutorials

Display your best content with Screenly digital signs.

Screenly is loaded with features to make digital signage management easy.

footer screen image
manage cookies