Ana içeriğe geç

Add Okta as an OAuth provider

This guide explains how to let users sign in to Casdoor with their Okta account.


Learning outcomes​

  • Create an OpenID Connect (OIDC) app integration in Okta.
  • Add Okta as an OAuth provider in Casdoor.

What you need​

  • An Okta organization. To try it, sign up at Okta Developer.
  • Administrator access to the Casdoor admin console

Create an app integration in Okta​

  1. In the Okta admin console, go to Applications > Applications and click Create App Integration.

  2. Select OIDC - OpenID Connect and Web Application, and click Next.

    Create a new app integration in Okta

  3. Set Sign-in redirect URIs to the callback URL of Casdoor, for example https://door.casdoor.com/callback.

    Sign-in redirect URIs of the app

  4. Under Assignments, select Controlled access, and click Save.

  5. Copy the Client ID, the Client secret, and the Okta domain.

    Client credentials and Okta domain

Add the provider in Casdoor​

  1. In the Casdoor admin console, go to Identity > Providers and add a provider.

  2. Set Category to OAuth and Type to Okta.

  3. Enter the Client ID and the Client secret.

  4. Set Domain to the URL of the authorization server, https://<okta-domain>/oauth2/default, not the Okta domain alone. See Authorization servers in the Okta documentation.

    Okta provider in Casdoor

  5. Save the provider.

Next steps​

Add the provider to an application. See Add providers to an application.

See also​