User Experience
Updated On 08 October 2024 | Min(s) read

Integrating OKTA

This topic provides detailed steps to configure OKTA, TB-server, and Transact Explorer to enable single sign on (SSO) feature using OIDC protocol.

Configuring OKTA

To create an OKTA account and assign users to the application,

  1. Create an OKTA developer account through https://developer.okta.com/login/.
  2. Sign up with your email address. Account activation link is sent to your registered email address.
  3. Click Activate and reset your password.
  4. Log in to OKTA.
  5. You are now successfully logged in to OKTA. You can now create an application and assign users to it.

Creating Application

To create an application,

  1. Select Applications > Applications from the left navigation pane. The Applications page appears on the right pane.
  2. Click Create App Integration. The Create a new app Integration pop-up window displays.
  3. Select Sign-in method as OIDC - OpenID Connect and Application type as Web Application and click Next.
  4. Enter the below details in the New Web App Integration page and click Save.
    • App integration name
    • Grant type
    • Sign-in redirect URI
    • Assignments controlled access

    After saving, you can view the Client ID and Client Secret in the General tab.

    The Client ID and Client Secret are used for configuring war files.
  5. Navigate to the Sign On tab. In OpenID Connect ID Token section, click Edit and select Okta URL in the Issuer field.
  6. You have now successfully created an application.

Assigning Users

To assign a user to the application,

  1. Navigate to the Assignments tab and click Assign > Assign to People. The Assign TransactExplorer to People pop-up window appears.
  2. Enter the name in the User Name field (this user should be available in Transact) and click Save and Go Back.
  3. You have successfully assigned a user to the TransactExplorer application. You can now proceed configuring the tb-server.war and transact-exploere-wa.war files.

Configuring tb-server.war

To configure the tb-server.war file, you need to modify the below files.

Configuring transact-explorer-wa.war

To configure the transact-explorer-wa.war file, modify the below files:

Configuring Users in Transact

To configure a user in Transact,

  1. Create a new user profile with the Sign-On Name same as the user name created in OKTA.
  2. Set the PREAUTHENTICATED attribute for the user.
  3. The user created in OKTA is now successfully configured in Transact.

To verify the OKTA integration with Transact,

  1. Launch http://localhost:9089/transact-explorer-wa. The OKTA login page appears.
  2. Enter your credentials and sign in.
  3. You are now redirected to Transact Explorer.

Copyright © 2020- Temenos Headquarters SA

Published on :
Tuesday, April 1, 2025 6:06:55 PM IST