Merge pull request #2486 from rancher/ryanelliottsmith-patch-1

Update Okta authentication docs
This commit is contained in:
Catherine Luse
2020-05-04 14:12:23 -07:00
committed by GitHub
@@ -24,16 +24,16 @@ Setting | Value
1. Select **Okta**. 1. Select **Okta**.
1. Complete the **Configure Okta Account** form. The examples below describe how you can map Okta attributes to fields within Rancher. 1. Complete the **Configure Okta Account** form. The examples below describe how you can map Okta attributes from attribute statements to fields within Rancher.
| Field | Description | | Field | Description |
| ------------------------- | ----------------------------------------------------------------------------- | | ------------------------- | ----------------------------------------------------------------------------- |
| Display Name Field | The attribute that contains the display name of users. | | Display Name Field | The attribute name from an attribute statement that contains the display name of users. |
| User Name Field | The attribute that contains the user name/given name. | | User Name Field | The attribute name from an attribute statement that contains the user name/given name. |
| UID Field | An attribute that is unique to every user. | | UID Field | The attribute name from an attribute statement that is unique to every user. |
| Groups Field | Make entries for managing group memberships. | | Groups Field | The attribute name in a group attribute statement that exposes your groups. |
| Rancher API Host | The URL for your Rancher Server. | | Rancher API Host | The URL for your Rancher Server. |
| Private Key / Certificate | A key/certificate pair to create a secure shell between Rancher and your IdP. | | Private Key / Certificate | A key/certificate pair used for Assertion Encryption. |
| Metadata XML | The `Identity Provider metadata` file that you find in the application `Sign On` section. | | Metadata XML | The `Identity Provider metadata` file that you find in the application `Sign On` section. |
>**Tip:** You can generate a key/certificate pair using an openssl command. For example: >**Tip:** You can generate a key/certificate pair using an openssl command. For example:
@@ -41,6 +41,7 @@ Setting | Value
> openssl req -x509 -sha256 -nodes -days 365 -newkey rsa:2048 -keyout myservice.key -out myservice.crt > openssl req -x509 -sha256 -nodes -days 365 -newkey rsa:2048 -keyout myservice.key -out myservice.crt
1. After you complete the **Configure Okta Account** form, click **Authenticate with Okta**, which is at the bottom of the page. 1. After you complete the **Configure Okta Account** form, click **Authenticate with Okta**, which is at the bottom of the page.
Rancher redirects you to the IdP login page. Enter credentials that authenticate with Okta IdP to validate your Rancher Okta configuration. Rancher redirects you to the IdP login page. Enter credentials that authenticate with Okta IdP to validate your Rancher Okta configuration.