Add an Oracle JD Edwards Application


The purpose of this tutorial is to walk through the process of setting up an Oracle JD Edwards application with Okta through the Access Gateway Admin UI.

Before You Begin


What’s covered in this guide

  1. Enable Single sign-on in JD Edwards EnterpriseOne Console
  2. Create the Application in Access Gateway
  3. Configure the Application
  4. Test the Application


Enable Single sign-on in JD Edwards EnterpriseOne Console

To enable single sign-on in the JD Edwards environment:

  1. Sign in to the JD Edwards EnterpriseOne Server Manager Management console as an administrator.
  2. In Select Instance, select EnterpriseOne HTML Server.
  3. In the Configuration tile, select View as Advanced, and then click Security.
  4. Select the Enable Oracle Access Manager check box, and then enter in the Oracle Access Manager Sign-Off URL field.
  5. Click Apply in the Security Server Configuration section.
  6. In Select InstanceAn instance, or computer instance, is a virtual machine (VM) or individual physical computer, used to host a software appliance., select EnterpriseOne HTML Server,
  7. Click Stop, and confirm that you want to stop the managed instance.
    If a message indicates that the web server configuration (jas.ini) is out-of-date, click Synchronize Configuration.
  8. Click Start and confirm that you want to start the managed instance.

Create the Application in Access Gateway

To create the application in Access Gateway:

  1. Navigate to your Access Gateway Instance.

  2. In the Access Gateway AdminAn abbreviation of administrator. This is the individual(s) who have access to the Okta Administrator Dashboard. They control the provisioning and deprovisioning of end users, the assigning of apps, the resetting of passwords, and the overall end user experience. Only administrators have the Administration button on the upper right side of the My Applications page. UI, sign in as administrator.

  3. Click the Applications tab.

    Select applications tab

  4. Click + Add to add a new application.

    Click Add.

  5. Select Oracle JD Edwards Enterprise One from the application menu, and click Create.

    Select JDEdwards and click Create



    Please see the Supported Applications section in Supported technologies support matrix for supported applications and software versions.

Configure the Application

To configure the Access Gateway JD Edwards application.

  1. In the Essentials pane enter:
    LabelThe name of the application,
    For example: JD Edwards
    Public DomainThe externally facing URL of the application.
    For example: https://jde-external.<>
    Protected Web ResourceThe URL and port combination of the Oracle JD Edwards Implementation being protected.
    For example: http://jde-app.domainA domain is an attribute of an Okta organization. Okta uses a fully-qualified domain name, meaning it always includes the top-level domain (.com, .eu, etc.), but does not include the protocol (https)..tld:7005
    Post Login URLEnter an appropriate target URL.
    For example https://jde-external.<>.com/jde/owhtml.
    Note that the post login URL may contain other elements specific to the implementation.
    GroupThe group containing users who can access the JD Edwards instance.
  2. Click Next.
    The Attributes pane appears.

    For detailed information on the attribute options, see Application Attributes .

  3. Confirm the IDP login field.


    By default the JD Edwards application template send the login field as the JDE_SSO_UID header.
    Change the value of the header field if required.
    In addition, you may add any additional header fields required by the application

  4. Click Next.
    The Policies pane displays.

    For detailed information on the advanced policy directives seeAdvanced Access Gateway Policy

  5. On the root policy row click the Pencil icon.
  6. Expand the Advanced sub-tab.
  7. In the Custom configuration tab enter a proxy redirect for the target JD Edwards application.
    For example:
    proxy_redirect http://jde-appAn abbreviation of application. Essentially, it is a web-based site used to perform any number of specific tasks, and requires authentication from end users by signing in..domain.tld:7005 https://$host:$server_port;
  8. Click Not validated when complete.

    If all values are entered correctly the Not Validated button will change to green/Validated.

  9. Click Okay.
  10. Click Done.


Test the Application

  1. Select SPAn acronym for service provider. Generally, an SP is a company, usually providing organizations with communications, storage, processing, and a host of other services. Within Okta, it is any website that accepts SAML responses as a way of signing in users, and has the ability to redirect a user to an IdP (e.g., Okta) to begin the authentication process. Initiated or IDP Initiated from the drop down menu associated with the application.
    Test the application

    Test the application



    Your Okta tenant administrator may need to assign the application to you.

    In addition, if you do not already have an active session for Okta open in your browser, you may be prompted to log in to your Okta account and provide credentials.

  2. Verify that you are logged into Oracle JD Edwards application correctly.

See Also