...
Pre-requisites
Contact Litera Devops DevOps before starting your 2FA authentication project. There are steps they need to perform first. You can also reach to support@litera.com to get their contact info.
Items to send to Litera
Identity Provider metadata hyperlink in Step Get the IDP Metadata
Steps
Create a SAML app in Okta
...
On the Create SAML Integration page, under General Settings, enter a name for your app.
Choose Next.
Under GENERAL, for Single sign on URL, enter https://yourDomainPrefix.auth.region.amazoncognito.com/saml2/idpresponse.
NOTE: Replace yourDomainPrefix and region with the values for your user poolFor Audience URI (SP Entity ID), enter urn:amazon:cognito:sp:yourUserPoolId.
NOTE: Replace yourUserPoolId with your Amazon Cognito user pool ID.Leave Name ID format as Unspecified
Set Application username as Email
Under ATTRIBUTE STATEMENTS (OPTIONAL) set the following (set the Name format as URI reference for all):
Click Next and Click Finish
...
On the Sign On tab for your Okta app, find the Identity Provider metadata hyperlink. Right-click the hyperlink, and then copy the URL and send the URL over to us:Litera DevOps.
...
Info |
---|
This is the hyperlink metadata that the DevOps team should add on the Cognito User pool step. |
...