Add Qlik application

This page describes the process of configuring a Qlik application through the Access Gateway Admin UI console console.

Qlik Architecture

Before you begin

Ensure that:

  • Access Gateway is installed and configured for use.
    See Manage Access Gateway deployment.
  • Access Gateway has been configured to use your Okta tenant as IDP.
    See Configure your Okta tenant as an Identity Provider for more information about configuring your Okta tenant as an IDP.
  • You have administrator rights on your Okta tenant and can assign applications to users and create groups.
  • The external app version is supported. Supported QLik versions include:
    • All




This application is part of a class of applications which exchange user information using header variables. See Add a generic header application for more information about the Access Gateway generic header application.

Access Gateway also provides a sample header application. See Add a sample header application.

Create the application in Access Gateway

To create the Qlik application in Access Gateway:

  1. Sign in to the Access Gateway Admin UI console.
  2. Click the Applications tab.

  3. Click +Add to add a new application.

  4. Select Qlik from the application menu, and click Create.

    Select Qlik and click Create



    Please see the Supported technologiessection in Supported technologies support matrix for supported applications and software versions.

Configure the application

To configure the Access Gateway Qlik application.

  1. In the Essentials pane enter:
    LabelThe name of the application,
    For example: Qlik application
    Public DomainThe externally facing URL of the application.
    For example: https://qlik.<>
    Protected Web ResourceThe URL and port combination of the Qlik application being protected.
    For example: http://qlik.<>
    GroupThe group containing users who can access the Qlik application.
  2. Important Note


    While optional, Okta recommends that all applications include certificates.
    See About Access Gateway certificates for general information about certificate.
    See Certificate management tasks for a general task flow for obtaining and assigning certificates.  

  3. Expand the Certificates tab.


    By default a wildcard self signed certificate is created and assigned to the application when the application is initially created.

  4. Optional. Click Generate self-signed certificate

    A self-signed certificate is created and automatically assigned to the application.
  5. Optional. Select an existing certificate from the list of provided certificates.
    Use the Search field to narrow the set of certificates by common name.
    Use the page forward (>)and backward(<) arrows to navigate through the list of available certificates.

  6. Click Next. The Attributes pane appears.

    See Application attributes for more information on the attribute options.

  7. Confirm the IDP login field.


    The Qlik application template sends the login field as the QVUSER header by default. Change the value of the header field if required. You can add any additional header fields required by the application

  8. Click Done.


Test the application

  1. Click Goto application and select SP Initiated or IDP Initiated from the drop-down box associated with the application.



    Your Okta tenant administrator may need to assign the application to you.

    In addition, if you do not already have an active session for Okta open in your browser, you may be prompted to log in to your Okta account and provide credentials.

  2. Verify that you are signed in to Qlik application correctly.

Related topics