All Collections
Integrations
Single Sign-on
OKTA SCIM & SAML (SSO) Configuration Guide
OKTA SCIM & SAML (SSO) Configuration Guide
Jamie Gardyne avatar
Written by Jamie Gardyne
Updated over a week ago

In this article:


Features

The following provisioning features are supported:

Push new users

Push profile updates

Push user deactivation

Group Push

Please note that Group Push to create a Team in Lawvu is currently in the release phase with OKTA support. Once fully enabled in our app, this message will be deleted.


Requirements

You will require a LawVu account and be in contact with our implementation team.


OKTA Application

To simplify the configuration, LawVu has a pre-configured app in the OKTA Integration Network. We recommend using this application when integrating with LawVu. https://www.okta.com/integrations/lawvu

Click on the above link to add LawVu as an integration or select from the catalog. 

Browse the catalog and search for Lawvu

Add Integration


Step­ by ­Step Configuration Instructions

1. Enter the below values into SAML Settings under the Sign On tab after clicking the Edit button.

Base URL

Supplied by LawVu

Audience URI

Supplied by LawVu

Application username format

Email

2. Go to the Provisioning tab then click the Configure API Integration.

Please ensure you have Lifecycle Management licensed in your OKTA account.

3. Enable API integration and enter the below values supplied by your LawVu contact.

Base URL

Supplied by LawVu

API token

Supplied by LawVu

5. Enable Provisioning to App allowing Create Users, Update User Attributes and Deactivate Users

6. Assign LawVu application to users or groups.

Ensure users or groups appear under Assignment and please check your LOGS if required during troubleshooting.

7. Please supply the below table of values to LawVu from the Sign on tab > View SAML Setup Instructions button.

Please also inform your Lawvu implementation team of any additional logon domains you will be syncing and using on the platform as those need to be whitelisted.

Column

Value

Identity Provider Single Sign-On URL

Identity Provider Issuer

X.509 Certificate


Optional: Configure Role Provisioning

Please note that configuring SCIM role provisioning will disable the ability to change and assign roles within the LawVu platform. The legal team member with administrative access usually does this task manually in LawVu.

Using SCIM role provisioning will require an IT member with admin access to OKTA to change the role within OKTA user management.

Please liaise with your legal team and clarify how roles should be assigned in LawVu before configuring this part.


Reporting a problem

Before you report a problem, can you please check ALL of the above settings? If the issue persists, then please get in touch with our support team.

Did this answer your question?