Okta SSO & SCIM
Enterprise organizations can connect Murmurd to Okta for sign-in and SCIM-based provisioning. Murmurd supports an Okta OIDC setup flow for SSO.
Overview
This integration supports:
- Okta-based SSO
- optional SSO-only sign-in enforcement
- SCIM user provisioning
- SCIM group provisioning that maps groups to Murmurd teams
Okta OIDC Setup
- Create an OIDC app in Okta.
- Set the sign-in redirect URI to:
https://your-murmurd-domain/api/sso/oauth/callback
- Copy the Okta domain, client ID, and client secret into Murmurd.
- Test the connection from organization settings.
- Enable SSO when you are ready.
SCIM Provisioning
Murmurd also supports SCIM on Enterprise.
- users can be created or linked by email
- groups map to Murmurd teams
- SCIM-managed teams are created in the default division
- SCIM tokens are shown once and stored as hashes