Skip to main content
Certyneo

SSO with Okta

Last updated: August 28, 2026

Certyneo supports Single Sign-On with Okta, allowing your team members to sign in to their Certyneo workspace using their existing Okta credentials, with no additional password to manage.

1. Prerequisites

SSO is available on Certyneo's Business and Enterprise plans. You must be an administrator of your Certyneo workspace to start the configuration, and hold the necessary admin rights on the Okta side to create a SAML 2.0 or OpenID Connect application.

2. Supported features

  • SP-initiated SSO from Certyneo, via SAML 2.0 or OpenID Connect
  • Automatic account provisioning on first sign-in (Just-In-Time provisioning)
  • IdP-initiated SSO from Okta

SP-initiated Single Logout (SLO) from Certyneo isn't available yet.

3. Configuration steps

  1. In your Certyneo admin workspace, go to Settings → Workspaces and click "Configure SSO".
  2. You're redirected to our identity partner's secure admin portal (WorkOS). Select "Okta" as your identity provider.
  3. In your Okta Admin Console, create a SAML 2.0 (or OpenID Connect) application for Certyneo, then copy the SAML metadata URL (or the client ID / client secret for OIDC).
  4. Paste this information into the SSO admin portal.
  5. SSO is now active: your team members can sign in to Certyneo via "Sign in with Okta".

4. Troubleshooting

If sign-in fails, verify that the user exists with the same email address on both Okta and Certyneo, and that the Okta application is properly assigned to the user or their group.

For any assistance configuring SSO, contact us at contact@certyneo.com.