> ## Documentation Index
> Fetch the complete documentation index at: https://docs.frankieone.com/llms.txt
> Use this file to discover all available pages before exploring further.

# FrankieOne Single Sign-On (SSO) with Okta

## Prerequisites

Ensure you’ve obtained the metadata from FrankieOne for your environment.

## Procedure

1. Navigate to the Okta Admin Dashboard > Applications > Applications > Create App Integration.

<img src="https://mintcdn.com/frankieone-f5583b1b/2KGpQCNiaIeLDKT2/images/v1/portal/da6a86b-okta_dashboard_1.jpg?fit=max&auto=format&n=2KGpQCNiaIeLDKT2&q=85&s=6a0cd041cda83d4169230b55ec593eb5" alt="" width="1897" height="859" data-path="images/v1/portal/da6a86b-okta_dashboard_1.jpg" />

2\. Choose the SAML 2.0 option and select **Next**.

<img src="https://mintcdn.com/frankieone-f5583b1b/Lj65OXd5WJX62s2b/images/v1/portal/85ec428-okta_new_app_saml2.jpg?fit=max&auto=format&n=Lj65OXd5WJX62s2b&q=85&s=623a812b6e99305501dc697dd65c3b5a" alt="" width="1917" height="861" data-path="images/v1/portal/85ec428-okta_new_app_saml2.jpg" />

3\. In the\*\* General Settings\*\* tab, assign a name to your application and select **Next**.

<img src="https://mintcdn.com/frankieone-f5583b1b/ImiD1ISY6DEFUA-s/images/v1/portal/c093a90-okta_newappsetup1.jpg?fit=max&auto=format&n=ImiD1ISY6DEFUA-s&q=85&s=00da00e0d37e6df2eb0485a33d8cb473" alt="" width="1918" height="861" data-path="images/v1/portal/c093a90-okta_newappsetup1.jpg" />

4\. In the Configure SAML tab, use the metadata provided by FrankieOne to fill in the details under the General section as follows:

<img src="https://mintcdn.com/frankieone-f5583b1b/Lj65OXd5WJX62s2b/images/v1/portal/649e498-okta_configureSAML.jpg?fit=max&auto=format&n=Lj65OXd5WJX62s2b&q=85&s=88a21e73a7f4e3153224c27785afd301" alt="" width="1896" height="865" data-path="images/v1/portal/649e498-okta_configureSAML.jpg" />

<img src="https://mintcdn.com/frankieone-f5583b1b/Lj65OXd5WJX62s2b/images/v1/portal/92b262c-okta_metadata.jpg?fit=max&auto=format&n=Lj65OXd5WJX62s2b&q=85&s=c71bbcb8e2f59baa4ab8ed45097f6165" alt="" width="1663" height="598" data-path="images/v1/portal/92b262c-okta_metadata.jpg" />

* Single sign-on URL: `<AssertionConsumerService.Location value from the metadata>`
* Audience URL (SP Entity ID): `<EntityDescriptor.entityID value from the metadata>`
* Default RelayState: `<Leave it blank>`
* Name ID format: Choose `Emailaddress` from the drop-down options.
* Application username: Choose `Okta username` from the drop-down options.
* Update application username on: Choose `Create and update` from the drop-down options.

5. In the Attribute Statements (optional) section, add attributes as shown in the screenshot.

<img src="https://mintcdn.com/frankieone-f5583b1b/Lj65OXd5WJX62s2b/images/v1/portal/6f00fed-okta_attributes.jpg?fit=max&auto=format&n=Lj65OXd5WJX62s2b&q=85&s=5b64eecbce0cfccad80ec29af5816d06" alt="" width="1897" height="864" data-path="images/v1/portal/6f00fed-okta_attributes.jpg" />

**Note: All three attributes shown in the screenshot are mandatory. The “roles” attribute can have multiple values separated by a comma and enclosed in double quotes.**

6. Select Next, then go to the Feedback tab, where you can choose the appropriate option based on your setup.

7. After creating the application, you’ll see the application’s\*\* Sign On\*\* settings page, which includes the link to the metadata. Share this metadata with us (FrankieOne) to complete the SSO setup.

<img src="https://mintcdn.com/frankieone-f5583b1b/2KGpQCNiaIeLDKT2/images/v1/portal/c62111d-okta_clientmetadata_url.jpg?fit=max&auto=format&n=2KGpQCNiaIeLDKT2&q=85&s=d056bb4f41d3dfacb86d14b0209c7a00" alt="" width="1895" height="866" data-path="images/v1/portal/c62111d-okta_clientmetadata_url.jpg" />

## Notes

* You can access the FrankieOne Portal using the App Embed Link available under the General tab on the application’s home page.

<img src="https://mintcdn.com/frankieone-f5583b1b/YJ8U5h0OEQLOVp6h/images/v1/portal/29e466d-OKTA_applink.png?fit=max&auto=format&n=YJ8U5h0OEQLOVp6h&q=85&s=f469664b569e216d1e27603f194e713a" alt="" width="779" height="561" data-path="images/v1/portal/29e466d-OKTA_applink.png" />

* If end users encounter permission errors from Okta, assign the respective users to this newly created application.
