Source record · tier 2 current vendor documentation
Configure single sign-on in Control Hub with Okta
- Publisher
- Cisco
- URL
- https://help.webex.com/en-us/article/crd76f/Configure-single-sign-on-in-Control-Hub-with-Okta
- Published
- 2025-10-21
- Updated
- unknown
- Accessed
- 2026-09-30
- HTTP status
- 200
- License
- Cisco website terms of use; no-redistribution; short excerpts and locators only
Source notes citing this source
- After testing the admin selects Successful test to turn on SSO or Unsuccessful test to turn it off; the SSO configuration does not take effect unless the first option is chosen. in context
- If Webex Meetings sites are not managed in Control Hub a separate SSO integration is required for them. in context
- In the Okta admin portal the admin adds the Cisco Webex application from Applications > Add Application and selects SAML 2.0. in context
- Users and groups must be assigned to the Okta Webex app or the Control Hub and Okta integration will not work. in context
- Webex supports three NameID formats and uses the first NameID entry listed in the IdP metadata. in context
- Cisco's Okta procedure sets the app to not display the application icon to users or in the Okta Mobile App. in context
- Because Okta does not sign its metadata the admin selects Less secure when importing Okta metadata into Control Hub. in context
- For Okta the admin copies the entityID and the AssertionConsumerService location from the Webex metadata file into the Okta app's advanced SAML settings. in context
- Control Hub SSO supports only service-provider-initiated (SP-initiated) flows. in context
Cite this source record
APA
WarmTransfer. (2025, October 21). Configure single sign-on in Control Hub with Okta. WarmTransfer. https://warmtransfer.net/knowledge/sources/cisco-help-crd76f-sso-okta
BibTeX
@misc{warmtransfer-cisco-help-crd76f-sso-okta,
title = {Configure single sign-on in Control Hub with Okta},
author = {{WarmTransfer}},
year = {2025},
url = {https://warmtransfer.net/knowledge/sources/cisco-help-crd76f-sso-okta},
note = {Cisco, accessed 2026-09-30}
}