help
help copied to clipboard
Okta OIDC & Bitwarden - use Okta org auth server instead of custom auth server
Hi all,
according to https://bitwarden.com/help/article/oidc-okta/ you should use a custom auth server in Okta (default is the first custom auth server, a bit confusing - I know)
The thing is: not all subscriptions have custom auth servers!
I did not try, but what I read: Bitwarden does NOT need any custom claims or scopes - then you would be good to just use the Okta org auth server, which is always included (in any subscription).
You can browse to the discovery endpoint with your browser to get the proper values for your Okta org, as described here: https://developer.okta.com/docs/concepts/auth-servers/#org-authorization-server-discovery-endpoints
OpenID: https://${yourOktaOrg}/.well-known/openid-configuration
OAuth: https://${yourOktaOrg}/.well-known/oauth-authorization-server