Configuring Okta Identity Engine for OpenID Connect 2.0

Jamf Connect Documentation

Solution
Application
Jamf Connect
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

With an Okta app integration configured as an OpenID Connect 2.0 (OIDC) application, you can now navigate into your Okta admin console and create a connection with Jamf Connect.

Requirements
  • Access to your organization's Okta Identity Engine admin console.

  • An existing Okta app integration with OpenID Connect 2.0 (OIDC).

  1. Log in to the Okta Identity Engine admin console.
  2. Navigate to Security > Authentication Policies.
  3. Click Add a policy.
  4. Create a name and description for the policy.
  5. Click Actions under the Catch-all Rule section.
  6. In the THEN section, change the option for User must authenticate with to the value Password.

    If Password is unavailable, this configuration is incompatible with the password sync and background password check features of Jamf Connect due to Okta Global Session Policies. For more information, see Global session policies (okta Docs).

  7. Click Save.
  8. Navigate to the Applications tab.
  9. Click Add app.
  10. Locate the name of your Jamf Connect application and click Add.
  11. Click Close.

You can now test your configuration with Jamf Connect. For more information on creating a Jamf Connect configuration, see Creating a Configuration Profile using Jamf Connect Configuration.