How to set up SSO with Okta in Bright Data?

- An Okta organization account with admin permission
- A Bright Data account with admin permission


1. On your Okta admin dashboard, choose 'Applications > Applications'


2. Click 'Create App Integration'



3. Select 'OIDC - OpenID Connect' as the Sign-in method,

4. Select'Web Application' as the Application type and click 'Next'


5. At this point you should be redirected to a new web app integration page. Here you can name your app integration (we recommend to use "Bright Data Control Panel" name).

6. At ‘Grant type’ select Implicit along with Authorization Code


7. Go to Bright Data Control Panel

8. Open OKTA configuration dialog


9. Copy "Sign-in redirect URI"


10. Paste it to according field in New App setup in OKTA


11. Repeat the same for "Sign-out URI"

12. At ‘Assignments’, select an access level as you want


13. Click 'Save'

14. Now, you should land on your new app integration settings page.

Copy your Client ID, Client Secret, and Okta domain to OKTA setup dialog in your Bright Data Control Panel. 



15. Click "Activate".


Skip step 16 if you selected "Allow everyone to access"

16. Go to "Assignments" tab and assign users allowed to use this integration


17. Go to Bright Data Settings page and make sure all required users presented.

We're working on users provisioning support, at the moment - you should manage it manually.


* The following steps are optional. They are for enabling your users to launch authentication from their dashboard or the Okta Chrome extension.

18. Scroll down to ‘General Settings’ and click Edit

19. Set these settings:
- Login initiated by: Either Okta or App
- Application visibility: Display application icon to users
- Login flow: Redirect to app to initiate login (OIDC Compliant)
- Copy Initiate login URI from Control Panel


20. Save changes. Now integration ready to work.



* Notes

- Okta Domain should be the one that appears in your app integration settings (, NOT the one you are seeing as an admin (

- Make sure the Credentials provided to Bright Data are correct, we cannot check them on our side.

Sign-in Redirect URI is a must in order to make the SSO feature work correctly
Initiate login URI is needed if the you wants to be able to use the feature from the Okta Chrome extension or the Okta dashboard



Was this article helpful?