Configure OKTA Authorization Server for SRD API - Intergraph Smart Reference Data - Installation & Upgrade - Hexagon PPM

Intergraph Smart Reference Data Installation (10.1)

English (United States)
Intergraph Smart Reference Data
Search by Category
Installation & Upgrade
Smart Materials/Smart Reference Data Version

Before you start to configure, it is assumed that an OKTA user account is created and the user is logged into OKTA as an administrator.

The steps for configuring OKTA Authorization Server are listed below:

  1. Create the OKTA Application (client).

  2. Create a user in OKTA.

  3. Create an OKTA Authorization Server (AS) and assign the OKTA Application to it.

  4. Edit the SRD API Web.config and set the Audience and Issuer URI gathered from OKTA.

Create an OKTA Application

OKTA refers the clients as applications. You must grant the application access to an Authorization Server.

  1. Click the Applications tab and select Applications.

  2. Click Add Application.

  3. Click Create New App.

  4. Select OpenID connect as Sign on method for the Native app.

  5. Click Create.

  6. Enter the Application label and add the Login and Logout URIs including any local host redirects for dev/test.

  7. Select the Authorization Code check box.

  8. Select the Refresh Token check box.

  9. Click Save. The Login Redirect URIs, Client ID will be auto-populated.

  10. In the Client Credentials section, click Edit, and select Use Client Authentication. Make a note of the Client ID and Client Secret.

    You can view the Client Secret only after selecting Use Client Authentication option.

  11. Click Save.

Add New Users to OKTA

  1. Click the Dashboard tab and select Dashboard.

  2. Click the Add people hyperlink.

  3. In the People screen, click Add Person.

    You can also navigate to People screen from the Directory tab.

  4. Enter the required data to create a new user profile.

  5. Click Save.

    The Username can be same as the Primary email.

Assign the application to user

  1. Open OKTA application.

  2. Click the Assignments tab.

  3. Click Assign and select Assign to People.

  4. Search for appropriate group /people to assign.