Skip to main content

Set up SSO in Okta for Paved

Learn how to Okta SAML SSO for your Paved account.

Updated over 11 months ago

This article explains how to set up your SSO connection using Okta as the identity provider so that users can sign in to Paved with their organization’s email address. This connection uses SAML (Security Assertion Markup Language) to allow Paved to communicate with Okta to authenticate users.

If you are on Paved and would like to add single sign-on (SSO) features to your account, please contact our support team.


Minimum Requirements

To configure SSO with Okta, you must have:

  • An existing Okta account,

  • Company admin role in your Paved account,

  • 2FA must be turned off for your Paved account,

  • Okta support must be enabled on your Paved account. You can request this feature through Paved support.


Supported Features

In addition to User Authentication, this implementation supports Service Provider Initiated (SP-Initiated) SSO Flow. This means that the log-in process can be initiated from Paved, which then sends a request to Okta, and Okta responds, making the log-in process smoother and easier.

No other features (i.e. profile sync, provisioning, etc.) are supported at this time.


Okta SSO Configuration Steps

Setting up Okta SSO with Paved is a two-step process. You’ll first add the Paved Application to your Okta account. Then, you’ll configure your Paved security settings to connect to Okta.

After setup is complete, team members will be immediately required to re-login to Paved using their Okta credentials. Their current work access may be interrupted.

Part 1: Add Paved Application to Okta

To set up SSO, you must register Paved as a SAML app on Okta.

  1. Open your Okta admin dashboard and click Applications.

  2. Go to Application > Browse App Catalog.

  3. Search for Paved.

  4. Click Add Integration to install the Paved integration.

  5. Click Done.

Now, the application will be added to your Okta org and is ready to be assigned to your team members. Click Assign to add the team members or groups who will be accessing Paved, including yourself.

Once you’ve added People, keep the Okta window open and proceed to Part 2.


Part 2: Configure Okta SSO in Paved

Next, open a new tab to set up SSO in your Paved account.

  1. Log in to Paved and go to Settings > Company.

  2. Scroll to Okta Settings.

  3. In the form fields, enter the following information:

    1. Client ID and Secret:
      Go back to your Okta window and look for the Client ID and Secret on the Sign On tab of the Paved Application.

    2. Domain:
      This can be found in your Okta dashboard header and typically follows the format of [companyname].okta.com.

  4. Click Update to confirm the connection and enable SSO.

Once the connection is authenticated, you’ve successfully enabled SSO for you and your team members.

Note: Only a company admin can make these changes.

Did this answer your question?