# Okta

> Part of the NocoDB documentation (Product docs > Account & Billing > Authentication ☁ > SAML). Index of all pages: https://nocodb.com/llms.txt. Any docs page is available as Markdown by adding `.md` to its URL.

URL: https://nocodb.com/docs/product/account-settings/authentication/saml-sso/okta
Last updated: 2026-09-25

Learn how to configure Okta as an identity provider for NocoDB.

This article briefs about the steps to configure Okta as Identity service provider for NocoDB

### NocoDB, Retrieve `SAML SSO` Configuration details

1. Go to `Account Settings`
2. Select `Authentication (SSO)`
3. Click on `New Provider` button
4. On the Popup modal, Specify a `Display name` for the provider; note that, this name will be used to display the provider on the login page
5. Retrieve `Redirect URL` & `Audience / Entity ID`; these information will be required to be configured later with the Identity Provider

<img alt="SAML SSO Configuration" src={__img0} placeholder="blur" />
<img alt="SAML SSO Configuration" src={__img1} placeholder="blur" />
<img alt="SAML SSO Configuration" src={__img2} placeholder="blur" />

### Okta, Configure NocoDB as an Application

1. Sign in to your [Okta account](https://www.okta.com/)
   * Navigate to `Applications` > `Applications`
   * Click `Create App Integration`
2. In the pop-up with title `Create a new app integration` choose `SAML 2.0` as the Sign-in method
3. On the `Create SAML Integration` page, in the General settings - provide a name for your app; click `Next`
4. In the `Configure SAML` section:
   * Enter the `Redirect URL` copied from NocoDB in the `Single sign-on URL` field.
   * Add the `Audience URI` copied from NocoDB in the `Audience URI (SP Entity ID)` field.
   * Choose `Email Address` from the `Name ID format` options.
   * Select `Email` from the `Application user-name` options.
   * Click `Next`
5. Complete any additional information in the final step and click `Finish`
6. On your application's homepage,
   * Navigate to the `Sign-on` tab
   * Copy the `Metadata URL` from the `SAML 2.0` section
7. Go to the `Assignments` tab and click `Assign` to assign people or groups to this application.

### NocoDB, Configure Okta as an Identity Provider

1. Go to `Account Settings` > `Authentication (SSO)` > `SAML`
2. On the "Register SAML Identity Provider" modal, insert `Metadata URL` retrieved in step above; alternatively you can configure XML directly as well
3. `Save`

<img alt="SAML SSO Configuration" src={__img3} placeholder="blur" />

For Sign-in's, user should be able to now see `Sign in with <SSO>` option.

<img alt="SAML SSO Configuration" src={__img4} placeholder="blur" />

<Callout type="note">
  Post sign-out, refresh page (for the first time) if you do not see `Sign in with SSO` option
</Callout>

<Callout type="info">
  For more common questions and troubleshooting, see our 

  [SSO FAQ](/docs/product/account-settings/authentication/FAQs)

  .
</Callout>

## Availability

* SAML SSO is available on **NocoDB Cloud** (Business plan and above) and licensed self-hosted deployments (Business plan and above). For access, please reach [**out to sales team**](https://cal.com/nocodb/sales).
* For users on **Business plan**, the SSO configuration menu is available under **Settings** > **Single Sign-On (SSO)** in the workspace sidebar. Refer [here](/docs/product/account-settings/authentication#business-plan) for more details.
* **Domain Verification Required for Cloud Plans**: Before configuring SAML SSO, you must verify your domain in NocoDB (required for both Business and Enterprise plans in the cloud). Only users with email addresses from verified domains can sign in via SSO. See [Domain Verification](/docs/product/account-settings/authentication#domain-verification) for details.

---

## Related pages

- [Auth0](https://nocodb.com/docs/product/account-settings/authentication/saml-sso/auth0.md): Learn how to configure Auth0 as an identity provider for NocoDB.
- [Ping Identity](https://nocodb.com/docs/product/account-settings/authentication/saml-sso/ping-identity.md): Learn how to configure Ping Identity as an identity provider for NocoDB.
- [Azure AD (Entra)](https://nocodb.com/docs/product/account-settings/authentication/saml-sso/azure-ad.md): Learn how to configure Active Directory as an identity provider for NocoDB.
