Back

Okta Integration

Contents

Introduction

Enrollment

Configure the Okta Integration

Use the Okta Integration

 

Introduction

Streamline workflows and improve efficiency and security by accessing Tamarac with single sign-on (SSO) through the Okta Identity Cloud. This integration provides you with fast and secure access to the Tamarac platform from any device, ultimately making day-to-day work easier so you can focus on enhancing client service.

With this integration, you can:

The following SSO initiation sources are supported:

Supported Not Supported
IdP-initiated flows Service provider (SP)-initiated flows
  Just In Time (JIT) provisioning

To require users to access Tamarac products via SSO and block direct access, see Require Single Sign-On to Access Tamarac Products.

Enrollment

To request the Okta integration:

  1. Contact Tamarac Account Management at TamaracAM@envestnet.com to request Okta integration.

  2. Sign the paperwork provided by Tamarac Account Management.

  3. Complete configuration steps 1 through 4.

  4. Contact Tamarac Account Management at TamaracAM@envestnet.com to provide the required information.

Configure the Okta Integration

To set up the Tamarac SSO in Okta:

  1. In Okta, under Add Applications, search for the application Envestnet | Tamarac. Click Add.

  2. In the General Settings tab, enter a temporary PartyCode value and click Next.

  3. Under the Sign On tab, click View Setup Instructions.

  4. Contact Tamarac Account Management at TamaracAM@envestnet.com and request that they enable Okta for your firm. From the setup instructions document, copy the following information to include in your email to Tamarac Account Management. (This information is provided as an example. Exact values are unique to each firm.)

    Setting Sample of What to Send
    IdP Issuer

    Click View Setup Instructions to find this URL. Copy and paste it into your email to Tamarac Account Management.

     

    SSO Certificate

    Click View Setup Instructions to find the SSO Certificate. Click the URL provided to download the certificate and attach it to the email to Tamarac Account Management.

     

    If you have trouble sending the file, rename the file extension to .txt to send it via email.

  5. When Tamarac has processed your request, they will contact you and provide a PartyCode value.

  6. Open Okta.

  7. Open the Tamarac app. In the General Settings tab, enter the PartyCode provided by Tamarac

  8. Click Save.

Use the Okta Integration

To log in to Tamarac using Okta integration:

  1. Log in to Okta using your Okta credentials.

  2. On the Okta dashboard, click Envestnet | Tamarac. Tamarac will open in a new window. When you log in to Tamarac using Okta SSO for the first time, you will be prompted to enter your Tamarac login credentials. Once you validate the user by logging in, subsequent SSO requests will directly log you in.