In your Okta Admin panel, click Add Application,
then click the green Create New App button. In the pop-up select SAML and then Create.
For the App name, type TonicDM.
For the logo, paste this text as the filename:
https://s3.amazonaws.com/img.tonicdm.com/TonicDM_Logo_Frutiger_Smooth_00bbe8_T_250px.png
then click the Upload Logo button. Click Next.
In the SAML Settings, enter:
Single sign on URL: https://tonicdm.com/saml/callback
Audience URI (SP Entity ID): https://tonicdm.com/saml/metadata
Name ID format: EmailAddress
Download the Okta Certificate.
------ Optional ------
Under Show Advanced Settings check Allow application to initiate Single Logout.
Single Logout URL: https://tonicdm.com/saml/logout
SP Issuer: https://tonicdm.com
You must also upload a certificate (refer to Okta help).
----------------------------
In the Attribute Statements section, assign parameters for TonicDM to your organization's Okta parameters.
firstName user.firstName
lastName user.lastName
email user.email
NOTE: the capitalization (eg. firstName) is critical.
------ Optional ------
TonicDM can optionally accept additional parameters which enhance the auto-creation of your users' profiles. Only add these TonicDM parameters if your organization has a matching Okta parameter.
displayname
jobtitle
telephonenumber
city
streetaddress
----------------------------
----------------------------
Finish creating the TonicDM application.
On the Application page, assign users to TonicDM, then email the certificate you downloaded and the Identity Provider Metadata to support@tonicdm.com
Assign users to the TonicDM Application to allow them to log in.
The remaining set up must be done by TonicDM. We will notify you when this is complete.