OIDC SSO Setup with Okta
This guide explains how to configure OIDC -based Single Sign-On (SSO) between Okta and Fairjungle.
Once set up, users can log in to Fairjungle securely using their Okta credentials, streamlining access and improving security.
Prerequisites
Before you begin, make sure you have:
- Admin access to Okta
- Admin access to Fairjungle
Supported features
The Okta/Fairjungle OIDC integration currently only supports SP-initiated SSO : this authentication flow occurs when the user attempts to log in to the application from Fairjungle.
For more information about SSO workflows, visit the Okta Glossary.
Step 1: Create a OIDC SSO Integration in Fairjungle
- Log in to your Fairjungle Admin Console
- Go to the SSO tab
- Click the OKTA OAUTH button
- Enter the name of your new SSO Connection* (for instance "My Okta Connection")
- Enter your Okta Domain (looks like acme.okta.com) in the Fairjungle Organization URL
- Leave this page open while you configure your new OIDC App in Okta
Step 2: Create a New OIDC App in Okta
- Log in to your Okta Admin Console
- Go to Applications > Applications
- select Browse App Catalog and search for Fairjungle
- Click Add Integration and then click Next
- Select the Sign On tab for the Fairjungle OIDC app, go to **Sign on methods > OpenID Connect
- Copy the Client ID, Client secret
Step 3: Configure the OIDC Settings in Fairungle
- Copy the Okta Client ID into Fairjungle Client ID
- Copy the Okta Client secret into Fairjungle Secret
- Save your new Fairjungle OIDC connection
Step 4: General Settings
- App label:
Fairjungle
or any name that will help identifying your new SSO connection to Fairjungle in your Okta account - Tenant Subdomain: Your tenant subdomain for Fairjungle.
Your tenant subdomain for Fairjungle appears as the first component of the URL you use to access fairjungle. If your fairjunle URL is https://your-subdomain.app.fairjungle.com then your tenant subdomain is your-subdomain
If you can't find your tenant subdomain, contact Fairjungle Support.
Step 5: Finish Setup and Assign Users
- Review the configuration summary
- Click Finish to create the app
- Go to the Assignments tab
- Assign the Fairjungle app to appropriate users or groups
Optional: Enforce SSO Login in Fairjungle
If you want to require users to log in only via SSO:
- Fairjungle can restrict login for users under a specific domain (e.g.
@yourcompany.com
) - Contact support to enable this enforcement policy
SP-initiated SSO
- Go to: https://[your-subdomain].app.fairjungle.com/
- Click Login with Okta.
Enjoy
That’s it, your Okta SSO is activated on fairjungle.