Add an app with Express Configuration

Express Configuration lets you quickly set up SSO for an OpenID Connect (OIDC) app in the OIN. During Express Configuration, Okta and the app exchange the data necessary to automatically set up SSO. This reduces the need for manual setup and minimizes the chance of error when you configure SSO for an app.

When Express Configuration is available for an app, an Express Configuration for [app name] section appears on the integration page.

By default, Express Configuration apps have Proof Key for Code Exchange (PKCE) enabled for the OIDC flow, and the openid, profile, and email OIDC scopes are allowed.

Before you begin

  • Ensure that you have an admin role with permissions to manage apps.
  • Ensure that you have admin credentials for the OIN app that you want to integrate.

Start this task

  1. In the Admin Console, go to ApplicationsApplications.

  2. Click Browse App Catalog.
  3. Search for and select an Express Configuration-enabled app.
  4. Click Add Integration.
  5. On the General tab, complete the required settings and click Next.
  6. Go to the Authentication tab.
  7. In the Sign on methods section, click Edit.
  8. Select the OpenID Connect sign-on method and click Save.
  9. In the Express Configuration for [app name] section, click Configure SSO with OIDC. The app sign-in page opens.
  10. Enter your admin credentials for the app and click Continue.
  11. Click Accept to grant Okta access to your account.
  12. Wait a moment while Okta integrates the app. A notification appears when the integration is complete.
  13. Configure any required settings for the app. See Configure settings for app integrations.

If you change the protocol for the app (for example, from OIDC to SAML), you need to reconfigure the integration settings.

Next steps

Configure provisioning for an app integration

Manage provisioned users

Assign app integrations