SSO Configuration

As an admin, you can enable SSO login for your CloudAgent account. This allows your agents to log in using your organization’s identity provider (e.g., Okta). The process described below uses Okta as an example, but the steps are similar for other providers that support SAML 2.0.


Step 1: Configure Okta

  1. Log in to Okta and go to Applications.


  2. Click Create App Integration → Select SAML 2.0. You’ll be redirected to the configuration page.

  3. General Settings

    1. Provide an application name (any name you prefer).
    2. Configure other fields as required.
  4. Configure SAML

    1. Single Sign-On URL

      1. Domestic instance (India customers): https://api.cloudagent.ozonetel.com/saml/SSO
      2. US instance (outside India): https://api.cxhub.ozonetel.com/saml/SSO
    2. Audience URI (SP Entity ID): ozonetel

    3. Name ID format: EmailAddress

    4. Other fields can be configured as required.


  5. Feedback and Finish

    1. Fill out Okta’s optional feedback form.
    2. Click Finish. Your application will be created.
  6. Collect Metadata from Okta

    1. Go to the app’s Sign-On tab. Copy the following:
      1. Issuer URL

      2. Metadata URL (or download the metadata XML file)



Step 2: Configure CloudAgent

  1. Go to Admin -> Settings -> Integrations, and navigate to the Operational tab. Enable the SSO login option.

  2. Fill out the configuration form:

    1. SAML configuration

      1. Identity Provider Entity ID (URL): Paste the Issuer URL from Okta.

      2. Federation Metadata: Provide the Metadata URL from Okta, or upload the downloaded metadata XML file.

  3. If it's an LDAP configuration, provide the necessary detail to configure.

  4. Save this configuration.


Step 3: Assign Users in Okta

  1. In your newly created Okta application, open the Assignments tab.
    1. Assign individual users or groups to the application.


  2. To add new users in Okta:
    1. Go to Directory → People and create users as required.



👍

Important Notes

  • Each agent or admin using SSO must have a valid email address configured in CloudAgent.
  • Users must already be logged in your Okta system before they can log in to CloudAgent.

Final Outcome

Once the setup is complete, users will see the option to log in via SSO on the CloudAgent login page.