This article is a preparation for setting up SAML SSO on Duo. Please note that before setting up SAML SSO on Duo, you must have existing directory credentials such as Azure AD, Google Workspace, Okta…etc.
Duo Single Sign-On is available in Duo Premier, Duo Advantage, and Duo Essentials commercial plans, and it is not available in Duo Federal plans. More info can be found here.
- You must be a Duo admin with the Owner role. Duo Administrative Roles can be found here. 
- Have at least one authentication source already configured in Duo under Duo Admin → Single Sign-On → Configured Authentication Sources. 
If you are using Azure AD or Google Workspace, see the help document here from Duo.
If you are using Okta, you can follow this guide below:
- Log in to the Duo Admin Panel and click Single Sign-On in the navigation bar on the left. 
2. On the Add Authentication Source page choose SAML Identity Provider as your authentication source. Click Add SAML Identity Provider.
3. In the “3. Configure Duo Single Sign-On” section, input DUO information
- Display Name 
- Entity ID 
- Single Sign-On URL 
- Certificate 
4. Assign user/group to Okta
After completing this step, Duo Authentication source is ready. Please click here for the following part of this article to setup an application on DUO and integrate it with Creative Force.
