Setting up Okta SSO
This article focuses just on setting up Okta SSO. For more general information on using SSO with Dado, please see our SSO help article.
Time required: 10 minutes
Pre-requisites: an Okta user account with access to the Admin Portal and permissions to add new Applications. This is likely a Super Admin user, unless you have configured custom permissions in your Okta portal.
Step 1: Setting up the SAML application within Okta
- Log into your Okta Admin Portal
- Navigate to Applications > Applications in the left-hand navigation
- Click Create App Integration
Choose SAML 2.0
- You'll now be taken through the process of setting up a SAML integration. In step 1, input an app name and logo (you can find Dado's logomark here)
- In Step 2, set the following values:
- Single sign on URL: https://sso.dadohr.com/okta/acs
- Audience URI: https://sso.dadohr.com/okta/metadata
- Name ID format: EmailAddress
- Application username: Email
All other options can be left empty/in their default state.
- In Step 3, select I'm an Okta customer adding an internal app. You can ignore the rest of the fields.
- Click Finish
You'll now be redirected to the Okta app admin screen for Dado. Scroll down this page until you find the section called SAML Signing Certificates. Click on the Actions link, then select View IdP metadata
- Clicking this link will open a new tab which contains the metadata XML. Make a copy of this XML, as you'll need to provide it to Dado.
- Before you leave Okta, go to the Assignments tab on this admin page for the Dado app, and set up the assignments as needed.
- EG: assign this only to members of the HR/People and IT Teams, if you only want them to be able to access the Dado Admin app
- EG: assign this to all employees if you'd also like employees to use SSO to log in to their personal experience pages
Access to Dado via a tile on the Okta dashboard is not currently supported, so we recommend you do not set this up in Okta.
Admins can access Dado via SSO by going to https://app.dadohr.com/
Employees can access Dado via SSO by clicking any link in any notification.
Step 2: Setting up SSO in Dado
- Go to the Dado Admin app, and navigate to Settings > Integrations.
- Scroll down til you find the Okta card, and click on it
- If you don't see an Okta card, ask our Customer team to switch this integration on for you. Please be aware: Okta is not available for all subscription levels.
- Paste the XML data you copied previously into the modal that appears, then click 'Save'
- Test the SSO login by clicking the “Test login” button, afterward enable SSO for End Users and/or Admin Users based on your needs