---
title: Okta SSO Configuration User Guide
description: Learn how to configure Okta SSO with external IdP using OIDC for AWS Cognito.
image: https://stratusgrid.com/hubfs/Okta%20SSO%20Configuration%20User%20Guide.webp
---

# Okta SSO Configuration User Guide

Learn how to configure Okta SSO with external IdP using OIDC for AWS Cognito.

[ Trevor Sullivan ](https://stratusgrid.com/knowledge-base/author/trevor-sullivan)

 Aug 22, 2024

#### Table of Contents

### Need additional support?

### Subscribe

![StratusGrid logo above the text 'Okta SSO Configuration User Guide' on a dark background](https://stratusgrid.com/hubfs/Okta%20SSO%20Configuration%20User%20Guide.webp)

Okta SSO Configuration User Guide

2:25

## External IdP Configuration Guide Overview (OIDC)

In order to configure an external OIDC provider for an AWS Cognito user-pool, there must be an exchange of information between both the app (Stratusphere) and the customer organization's system administrator.

Stratusphere will provide these to the system administrator:

- Application Login URL
- Allowed Callback URLs
- Allowed Logout URLs
- Application Logo (optional)

The system administrator must configure their SSO Provider with a new Application representing Stratusphere (and the above values). They must then provide the following (from the SSO Provider's newly registered application) to Stratusphere:

- Domain/Issuer URL
- Client ID
- Client Secret

Note: Each different SSO Identity Provider (Auth0, MS Azure Entra ID, etc) has different configuration screens/steps. This guide is specific to Okta.

Note: [SAML-required fields](https://docs.aws.amazon.com/cognito/latest/developerguide/cognito-user-pools-saml-idp.html) are different from those required to configure OIDC IdPs. This guide is specific to OIDC configurations.

## Customer System Administrator - Okta Configuration (OIDC)

Steps for the Customer's System Administrator:

1. For creating an OIDC Client Application in Okta representing Stratusphere:

- Application Logo 
    - [https://ok3static.oktacdn.com/fs/bco/1/fs01o9hqzdkzTEz4t1d8](https://ok3static.oktacdn.com/fs/bco/1/fs01o9hqzdkzTEz4t1d8)
- Application Type 
    - Regular Web Application
- Sign-in Redirect  URIs 
    - [https://scip-auth-prd.auth.us-east-1.amazoncognito.com/oauth2/idpresponse](https://scip-auth-prd.auth.us-east-1.amazoncognito.com/oauth2/idpresponse)
- Sign-out Redirect URIs 
    - [https://stratusphere.app/auth](https://stratusphere.app/auth)
- Initiate Login URI 
    - [https://stratusphere.app/auth](https://stratusphere.app/auth)

![Okta SSO login settings with redirect URIs and app-only login](https://lh7-rt.googleusercontent.com/docsz/AD_4nXfHsmCdwaqDl5yFsgkRP_UGVj4AACB6Of9hRQjVoxrGZvpermPIVIOxAZHfI6AEbsOwp1s6gCQH79H8QR--HHGyXaGDQQR8i9Ydr5FOi751R9QiQr6vkViRlSXFoQsDjAQcLeopCmr4Q0xI3gJ0bsq1806f?key=KWCghpInw8UnvlXkcBbDyA)

2. After a customer's system administrator creates the OIDC Client Application in Okta, in the Application Settings, they must send us the following from "Basic Information" (for use in Stratusphere's AWS Cognito configuration):

- Domain (URL)
- Client ID
- Client Secret

## Finalize Configuration and Test

Once the Application registration has been created and the secret has been configured in the Okta portal, please reach out to support at support@stratusphere.app. We will set up a 15min call to finish configuration and test the integration.

Please be prepared to provide the following values (from above) to the Stratusphere support team during the call (none of these values will be stored outside of the secure storage in the production SSO service):

- Application (client) ID
- Directory (tenant) ID
- Client secret's value

## Similar posts

<https://stratusgrid.com/knowledge-base/remediating-aws-ec2-instances-consolidation-for-microsoft-sql-server>

### [How to Remediate AWS EC2 Instances Consolidation for Microsoft SQL Server with Stratusphere™ FinOps](https://stratusgrid.com/knowledge-base/remediating-aws-ec2-instances-consolidation-for-microsoft-sql-server)

Learn how to optimize your Microsoft SQL Server instances on AWS with our consolidation guide. Save on licensing costs and enhance performance now!

 Stratusphere's AWStronaut  Mar 12, 2024

<https://stratusgrid.com/knowledge-base/how-to-backfill-cur-data>

### [How to Backfill CUR From AWS to Stratusphere™ FinOps](https://stratusgrid.com/knowledge-base/how-to-backfill-cur-data)

Discover how to efficiently backfill Cost and Usage Reports (CUR) from AWS into StratusGrid's cost optimization dashboard Stratusphere™ FinOps in our...

 Stratusphere's AWStronaut  Feb 13, 2024

<https://stratusgrid.com/knowledge-base/google-cloud-sso-configuration-user-guide>

### [Google Cloud SSO Configuration User Guide](https://stratusgrid.com/knowledge-base/google-cloud-sso-configuration-user-guide)

Learn how to configure Google Cloud OIDC SSO for Stratusphere Console login.

 Trevor Sullivan  Aug 22, 2024

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Trevor Sullivan",
    "url" : "https://stratusgrid.com/knowledge-base/author/trevor-sullivan"
  },
  "dateModified" : "2024-08-22T18:36:07.398Z",
  "datePublished" : "2024-08-22T18:36:07.000Z",
  "headline" : "Okta SSO Configuration User Guide",
  "image" : [ "https://stratusgrid.com/hubfs/Okta%20SSO%20Configuration%20User%20Guide.webp" ],
  "mainEntityOfPage" : {
    "@id" : "https://stratusgrid.com/knowledge-base/okta-sso-configuration-user-guide",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://stratusgrid.com/hubfs/Vertical%20Black.png"
    },
    "name" : "StratusGrid"
  }
}
```

```json
{
  "@context" : "https://schema.org/",
  "@type" : "Product",
  "aggregateRating" : {
    "@type" : "AggregateRating",
    "bestRating" : "5",
    "ratingCount" : "1",
    "ratingValue" : "5",
    "reviewCount" : "1",
    "worstRating" : "0"
  },
  "brand" : {
    "@type" : "Brand",
    "name" : "StratusGrid"
  },
  "description" : "StratusGrid, a premier AWS Consulting Partner, specializes in AWS cloud migration, modernization, stabilization, and cloud cost optimization services.",
  "image" : "https://stratusgrid.com/",
  "name" : "StratusGrid",
  "review" : {
    "@type" : "Review",
    "author" : {
      "@type" : "Person",
      "name" : "G2"
    },
    "datePublished" : "2024-01-21",
    "name" : "G2 User",
    "publisher" : {
      "@type" : "Organization",
      "name" : "G2"
    },
    "reviewBody" : "Great Customer Service and Extremely Knowledgable Team",
    "reviewRating" : {
      "@type" : "Rating",
      "bestRating" : "5",
      "ratingValue" : "5",
      "worstRating" : "0"
    }
  }
}
```