Introduction
Okta provides secure identity management and single sign-on to applications that you can add to your Okta account. From Okta, you and your users can log in to Okta and then access applications such as Paradime without having to log in to each application. Organizations can use Okta SSO to connect Paradime to their Okta instance. This page describes how to add configure the Okta connection for Paradime.Creating an Okta SSO Application
- To connect your Okta tenant as an identity Provider in Paradime, you must create an OIDC application. In your Okta Admin Dashboard, create a new application.
Select Applications > Applications, and Create App Integration.

- Select Create New App.
Choose SAML 2.0 as the Sign-in method and select Next.

- In the New Application Settings enter the following details:
- Enter your App integration name as Paradime.
- Add the Paradime Logo for the Application. You can download the paradime logo here Paradime Logo.
- In the Single sign-on URL section, enter the Redirect URI below based on the region where your Paradime account is hosted
- For Audience URI (SP Entity ID), enter the company token - you can get this from https://app.paradime.io/settings/current-workspace in your account

- Expand the Show Advanced Settings section and choose the response encryption settings as follows:

- Leave everything else unchanged and click on Next and then fill up the optional details and click Finish.

Make sure you add the user groups who need access to Paradime app in Okta in the Assignments section.
Configuring Paradime to enable Okta SSO
Once the Okta SSO Application is configured visit the Sign On tab of the application.
- Metadata URL
- Sign on URL
- Signing Certificate

If you already have an existing Google or Github login setup, then Paradime will automatically link your accounts and you can then use Okta SSO for all future logins.
- Once you have created the Paradime app, make it hidden so no user can access it.
- Create a bookmark app (instructions here) in Okta and point the app to
https://app.paradime.io - this way the user will always be directed to the Paradime login screen and will then use the Okta SSO to finally login to Paradime