Single Sign-On Using Okta
Follow our guide to set up single sign-on (SSO) into Fivetran using the Fivetran Okta gallery application.
Prerequisites
To set up Okta SSO with Fivetran, you need an Okta SuperAdmin or AppAdmin account and a Fivetran account with the .
In Okta
Add and configure the Fivetran application
Log in to your Okta Admin Console and go to Applications - Applications.
Click Browse App Catalog.

Enter Fivetran in the search box.
Select the Fivetran application.
Click Add.
In the General Settings tab of the Add Fivetran page, leave the pre-configured settings unchanged and click Next.

In the Sign-On Options tab on the Add Fivetran page, leave the pre-configured settings unchanged and click Done.

In the Assignments tab on the Fivetran app page, .
NOTE: Fivetran supports . If you assign users without a Fivetran account, Fivetran will create new accounts for them with the read-only access. You will need to .

Get Sign on URL, Issuer and Public certificate
To complete setup in Fivetran, you need the Sign on URL, Issuer and Public certificate. Follow these steps to get them:
In the Sign On tab on the Fivetran app page, click View Setup Instructions.

Make a note of the Sign on URL, Issuer, and Public certificate values. You will need them to configure Fivetran.
NOTE: Your public certificate should not include leading and trailing labels such as
-----BEGIN CERTIFICATE-----and-----END CERTIFICATE-----. Copy only the value between these labels.TIP: When configuring Single Sign-On with Okta , log in to your Okta account and go the Fivetran app page to be able to copy-paste the values.
In Fivetran
NOTE: By default, Fivetran allows . If you don't have a Fivetran user for the specified OneLogin user, the Fivetran user will be created automatically with the read-only access. To grant the newly created user the relevant role with the corresponding permissions, log in as a Fivetran user with the and manage the user's roles and permissions .
In Fivetran, click Account Settings > General.
Scroll down to the SAML Config section and toggle the Enable SAML authentication selector to ON.
Fill the Sign on URL, Issuer and Public certificate fields with the values you noted in .
Fill the Application identifier (Entity Id) field with the value Fivetran.

Click Save Config. You'll see the message Account settings successfully saved.
Testing SSO (Optional)
IMPORTANT: If you assigned the Fivetran app to a user who doesn't have a corresponding Fivetran user, you need to after they have been automatically provisioned in your Fivetran account.
To test SSO, follow these steps:
- In Okta, log in to the Okta End-User Dashboard as the user you have granted access to.
- Click Fivetran. You will be redirected to your Fivetran dashboard.
Comments
0 comments
Please sign in to leave a comment.