Prerequisites
- A Gumloop organization on an Enterprise plan, and the Admin organization role in it.
- Admin access to your Okta org.
- Each member’s Okta email must match their Gumloop email. Gumloop matches accounts by email.
Supported features
- SP-initiated SSO. Members start from the Gumloop sign-in page.
- Just-In-Time provisioning. A member with no Gumloop account gets one at their first sign-in, unless SCIM provisioning is on.
- Cross App Access. Okta can connect Slack and Asana for your members inside Gumloop. See Cross App Access with Okta.
Configuration steps
In Okta
- In the Okta Admin Console, select Applications and Resources > Applications and press Browse App Catalog.
- Search for Gumloop and press Add Integration. Keep the default label and press Done.
- Open the Assignments tab and assign the people or groups who should sign in to Gumloop.
- Open the Sign On tab and copy the Client ID and the Client secret. Note your Okta domain as well, the hostname of your Okta org, such as
acme.okta.com.
In Gumloop
- Go to gumloop.com/settings/organization/sso and press Set up OpenID Connect.
- Press Continue through the two steps that describe creating an app in Okta. The catalog integration already covers them.
- Under App credentials, enter the Okta domain, Client ID, and Client Secret from Okta, then press Save app. Gumloop verifies them with Okta before saving.
- Under Choose SSO domains, turn on each email domain that should sign in through Okta.
- Under Test sign-in, press Run test and sign in to Okta as yourself. The test must pass before you can continue.
- Review the Pre-flight checks, then press Activate Okta OIDC sign-in.
SP-initiated SSO
- Go to your organization’s Gumloop login page,
gumloop.com/signin/{your-slug}, or to gumloop.com/signin. - Enter your work email and press Sign in with SSO.
- Sign in to Okta if asked.
Troubleshoot
For anything else, contact support@gumloop.com.