OKTA Integration

Please use the following Ooyala Flex-specific settings where appropriate:


A single sign on URL is a call back url that an Identity Provider calls back upon authentication success.

Application Single Sign On URL
Flex Console https://oktatest.qa1.ooflex.net/login/saml/SSO
Flex MAM App https://oktatest.qa1.ooflex.net/mam/saml/SSO
Flex Reviewer App https://oktatest.qa1.ooflex.net/review/saml/SSO
Flex Metadata Designer App https://oktatest.qa1.ooflex.net/metadata/saml/SSO
Flex Workflow Designer App https://oktatest.qa1.ooflex.net/workflow/saml/SSO
Flex Webtransfer App https://oktatest.qa1.ooflex.net/upload/saml/SSO

Audience Restriction

The audience should be set to one of the following for the appropriate application:

Application Audience Restriction
Flex Console (Flex Enterprise) urn:ooyala:flex:flex-login-app
Flex MAM App urn:ooyala:flex:flex-mam-app
Flex Reviewer App urn:ooyala:flex:flex-reviewer-app
Flex Metadata Designer App urn:ooyala:flex:flex-metadatadesigner-app
Flex Workflow Designer App urn:ooyala:flex:flex-workflowdesigner-app
Flex Webtransfer App urn:ooyala:flex:flex-webtransfer-app

Attribute Statements

The following attribute statements must be configured: 

Name Name Format Value
login Basic user.login
email Basic user.email
firstName Basic user.firstName
lastName Basic user.lastName
flexAccountUuid Basic See below:

The flexAccountUuid attribute statement should be set to the UUID of the account that this IdP is being configured for. The Account UUID can be found on the Account details page in Ooyala Flex Enterprise.