<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <title>Integration SAML with Okta as IdP is not working.</title>
  <link rel="self" href="https://liferay.dev/c/message_boards/find_thread?p_l_id=119785294&amp;threadId=121212415" />
  <subtitle>Integration SAML with Okta as IdP is not working.</subtitle>
  <id>https://liferay.dev/c/message_boards/find_thread?p_l_id=119785294&amp;threadId=121212415</id>
  <updated>2026-04-04T06:43:18Z</updated>
  <dc:date>2026-04-04T06:43:18Z</dc:date>
  <entry>
    <title>RE: RE: Integration SAML with Okta as IdP is not working.</title>
    <link rel="alternate" href="https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=121219080" />
    <author>
      <name>Hiram Rosales</name>
    </author>
    <id>https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=121219080</id>
    <updated>2021-10-26T17:00:26Z</updated>
    <published>2021-10-26T17:00:26Z</published>
    <summary type="html">&lt;p&gt;Hi Olaf, thanks a lot for your answer.&lt;/p&gt;
&lt;p&gt;Tried that, runnign on https and modifying the URLs, but after that
  the behavior is similar just without the secure page. The redirection
  to the Login page of Liferay still not working for me, I'm not sure if
  it is related to the certificate between Okta and Liferay.&lt;/p&gt;
&lt;p&gt;Thanks!&lt;/p&gt;</summary>
    <dc:creator>Hiram Rosales</dc:creator>
    <dc:date>2021-10-26T17:00:26Z</dc:date>
  </entry>
  <entry>
    <title>RE: Integration SAML with Okta as IdP is not working.</title>
    <link rel="alternate" href="https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=121216814" />
    <author>
      <name>Olaf Kock</name>
    </author>
    <id>https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=121216814</id>
    <updated>2021-10-25T07:56:53Z</updated>
    <published>2021-10-25T07:56:52Z</published>
    <summary type="html">&lt;p&gt;You state&lt;/p&gt;
&lt;blockquote&gt;
  &lt;p&gt;Single Sign On URL: &lt;strong&gt;http&lt;/strong&gt;://my-liferay-portal/c/portal/saml/sso&lt;/p&gt;
  &lt;p&gt;Recipient URL: &lt;strong&gt;http&lt;/strong&gt;://my-liferay-portal/c/portal/saml/sso&lt;/p&gt;
  &lt;p&gt;Destination URL: &lt;strong&gt;http&lt;/strong&gt;://my-liferay-portal/c/portal/saml/sso&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;and those &amp;quot;http&amp;quot; URLs are, as the message states, not
  secure. Consider running your portal on https, and make this fact
  known to Octa&lt;/p&gt;</summary>
    <dc:creator>Olaf Kock</dc:creator>
    <dc:date>2021-10-25T07:56:52Z</dc:date>
  </entry>
  <entry>
    <title>Integration SAML with Okta as IdP is not working.</title>
    <link rel="alternate" href="https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=121212414" />
    <author>
      <name>Hiram Rosales</name>
    </author>
    <id>https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=121212414</id>
    <updated>2021-10-22T20:41:05Z</updated>
    <published>2021-10-22T16:21:42Z</published>
    <summary type="html">&lt;p&gt;Hello guys!&lt;/p&gt;
&lt;p&gt;I've been trying to setup the SAML in the Liferay console with Okta
  as IdP, however when I pass the Okta authentication with my user in
  the Liferay Login page it redirects me to an unsecure site
  confirmation, when I click on Send anyway it just redirecrts me again
  to the Liferay login page.&lt;/p&gt;
&lt;p&gt;
  &lt;span&gt;
    &lt;img alt="" src="/documents/14/0/liferay+redirect.jpg/d6d97218-a6d0-f88b-30dd-19927e981efb?t=1634918893761&amp;amp;imagePreview=1" /&gt;&lt;/span&gt;
  &lt;br /&gt;  &lt;/p&gt;
&lt;p&gt;In Okta side this are pretty much my configurations:&lt;/p&gt;
&lt;p&gt;Single Sign On URL: http://my-liferay-portal/c/portal/saml/sso&lt;/p&gt;
&lt;p&gt;Recipient URL: http://my-liferay-portal/c/portal/saml/sso&lt;/p&gt;
&lt;p&gt;Destination URL: http://my-liferay-portal/c/portal/saml/sso&lt;/p&gt;
&lt;p&gt;And saved the metadata as a .xml file to upload it to the IDP Connections.&lt;/p&gt;
&lt;p&gt;In Liferay SAML Admin these are my configurations:&lt;/p&gt;
&lt;p&gt;The Entitiy ID is the one that Okta provides me like: http://www.okta.com/xxxxxxxxxxxxxxxx&lt;/p&gt;
&lt;p&gt;In the Service Provider I have this Setup:&lt;/p&gt;
&lt;p&gt;
  &lt;span&gt;
    &lt;img alt="" src="/documents/14/0/Service_provider.jpg/0cf10169-69d3-92ad-e5b6-22af05721810?t=1634919436024&amp;amp;imagePreview=1" /&gt;&lt;/span&gt;
  &lt;br /&gt; And in the General part I have the Entity ID again and one
  certificate and Private Key that I generate directly in there.&lt;/p&gt;
&lt;p&gt;So at this point I'm not really sure what I coould be doing wrong, I
  mean, Okta ask me for my Okta credentials and are okay but after
  validating them, it's not redirectiing to the main page of Liferay, it
  shows as unsecured site and redirects me again to the login page.&lt;/p&gt;
&lt;p&gt;Appreciate your help guys, thanks in advance,&lt;/p&gt;
&lt;p&gt;Hiram R&lt;/p&gt;
&lt;p&gt; &lt;/p&gt;</summary>
    <dc:creator>Hiram Rosales</dc:creator>
    <dc:date>2021-10-22T16:21:42Z</dc:date>
  </entry>
</feed>
