Okta

Okta Overview
Okta is an access management platform. The HqO platform is integrated with Okta in order to enable secure customer authentication.
HqO supports Service Provider (SP) initiated transactions using OpenID Connect (OIDC) SSO security standards with Okta. For SSO, HqO will play the role of Service Provider (SP), and the client will play the role of Identity Provider (IdP).
Landlord Experience
Single Sign-On (SSO) at HqO is, at its core, about establishing a standard that enables and empowers employers to have true enterprise identity management in our product by utilizing their existing identity provider.
SSO allows your occupiers' employees to log in to the building app using the same credentials they use to access other work-related tools.
Occupier Experience
We believe that occupiers with SSO enabled will have higher saturation rates and higher registration completion rates due to the ease of logging in using their company credentials.
SSO also shifts responsibility for user management to the occupiers, which enables SSO from HqO. These companies have control over adding and removing access to their employees through their Identity Provider (IdP).
Configuring Okta
To add to SSO support, please reach out to your HqO Customer Success Manager or Implementation Manager.
Fill out the in-take form.
HqO requires that all expected HqO users have their own unique, company-specific email address that can log in/authenticate through the company’s current Identity Provider. The user’s email value will be OAuth unique user account value.
Based on your company’s email domains, an Identity Provider routing rule will be created to direct your users to authenticate via your Identity Provider.
User Flow with Single Sign-On



Definitions
The following terms and definitions apply to the context of the HqO Platform and the development of services integrated thereto.
Identity Provider (IDP): A trusted entity owning user identity information. Identity Providers share small subsections of their identity information with trusted service provider applications. Examples include Google, Okta, and Microsoft.
Service Provider (SP): An entity deputized to receive identity information from an identity provider. The service provider uses this information to offer services to users who do not have an account with the service provider. HqO will act as a service provider.
Single Sign-On (SSO): A protocol for using one service’s identity information to sign in to other services.
If you do not have Okta included in your HqO Contract, or you are interested in learning more about the offering from Okta, please reach out to your HqO Customer Success Manager to learn more.
Currently, the HqO & Okta integration is available globally.