Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in
Celebration

Earn badges and make progress

You're on your way to the next level! Join the Kudos program to earn points and save your progress.

Deleted user Avatar
Deleted user

Level 1: Seed

25 / 150 points

Next: Root

Avatar

1 badge earned

Collect

Participate in fun challenges

Challenges come and go, but your rewards stay with you. Do more to earn more!

Challenges
Coins

Gift kudos to your peers

What goes around comes around! Share the love by gifting kudos to your peers.

Recognition
Ribbon

Rise up in the ranks

Keep earning points to reach the top of the leaderboard. It resets every quarter so you always have a chance!

Leaderboard

Directly Redirecting to SSO Page

At our company, we only use Okta for SSO.

Is it possible to configure Atlassian cloud hosted products to directly redirect users to Okta versus showing this useless interstitial when a user is not logged in?

 

Thanks!
Screenshot 2023-11-07 at 1.55.23 PM.png

1 answer

1 vote
Kian Stack Mumo Systems
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
Nov 07, 2023

@-, no. The reason is that until Atlassian knows which user is trying to authenticate, they wouldn't know that the user should be using SAML.

We only allow access via okta. No other IDP is valid.

The person hits that page after being redirected from a particular Jira cloud instance that knows our IDP settings.

Kian Stack Mumo Systems
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
Nov 08, 2023

@-, it may be the case that you only allow via Okta, but other users COULD have access to your site that are not using the IDP to sign in. Each user can potentially be signing in using the "local" Atlassian password or the IDP. Atlassian does not know until the user enters their email address.

Shouldn't companies be able to control this? If they are 100% Okta, why make users click two extra times and have superfluous login options that will not work.

When someone hits https://<company>.atlassian.net/, Atlassian know the following:

  1. The login options that the company has configured
  2. The last way the user logged in before their cookies expired

Either one of the above is enough for them to send the user straight to Okta.

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
CLOUD
PRODUCT PLAN
PREMIUM
TAGS
AUG Leaders

Atlassian Community Events