Okta Active Directory (AD) User Synchronisation enables you to connect your Okta Active Directory to your Phriendly Phishing account. When an individual is configured in your Okta AD they will automatically be synchronised in your Phriendly Phishing account as a Learner. When an individual is removed from your Okta, the individual will be removed from your Phriendly Phishing account.
Requirements
- Super Admin access to your Okta instance is required to create your Okta Application. The Super Admin role has the highest permissions of all the admins within Okta.
- If you have already set up an Okta application to allow SSO for Platform Admins please skip to Configure in Phriendly Phishing platform.
1. Create App Integration
- Access your Okta Administration application with Super Administrator privileges and switch to Admin.
- Navigate to Applications > Create App Integration.
- Select the radio button SAML 2.0 > Next.
-
Set the App name to Phriendly Phishing or a preferred name of your choosing.
Set App Visibility to "Do not display application to icon to users".
2. Set-up SAML in Okta
-
Under Configure SAML, fill out fields with below details.
Single sign-on URL : https://launch.phriendlyphishing.com/company_admin/saml/acs
Check the box : Use this for Recipient URL and Destination URL
Audience URI (SP Entity ID) : PH2System
Name ID format : EmailAddress
Application username : Email
Update application username on : Create and update
- Click
- Under Feedback, complete as screenshot below and click Finish.
3. Create API Token
- In your Okta Dashboard, navigate to Security > API > Tokens > Create token.
- Enter a value for your API Token and click Create token.
- Copy the token ID in any text editor. You will need this later.
4. Assign Okta Security Group for Phriendly Phishing
- Navigate back to the Application created for Phriendly Phishing (created in Step 1).
- Click Assign > Assign to Groups.
- Click Assign > Done.
5. Configure in Phriendly Phishing platform
-
Important
Obtain below information prior in Okta before configuring in Phriendly Phishing
- Log in to Phriendly Phishing, click Settings
- Navigate to User Sychronisation > Learner Synchronisation > Okta.
-
Expand Okta Synchronisation and fill out details per below screenshot.
AD Security Groups are visible as Segment in Learners page. - Set up frequency to sync as desired.
- Set User code as the Unique Identifier.
- Click
and
.
- Preview sample learners list by downloading CSV.
- If you're happy with the data, proceed to Enable the button.
- Once sync has completed, it will show under the notification bell as below.
- Log in to Phriendly Phishing, click Settings
Congratulations ! You have successfully synched your learners from your AD via Okta.
Comments
Please sign in to leave a comment.