help icon indicating copy to clipboard operation
help copied to clipboard

Okta OIDC & Bitwarden - use Okta org auth server instead of custom auth server

Open TomTomNavigator opened this issue 4 years ago • 0 comments

Hi all,

according to https://bitwarden.com/help/article/oidc-okta/ you should use a custom auth server in Okta (default is the first custom auth server, a bit confusing - I know)

The thing is: not all subscriptions have custom auth servers!

I did not try, but what I read: Bitwarden does NOT need any custom claims or scopes - then you would be good to just use the Okta org auth server, which is always included (in any subscription).

You can browse to the discovery endpoint with your browser to get the proper values for your Okta org, as described here: https://developer.okta.com/docs/concepts/auth-servers/#org-authorization-server-discovery-endpoints

OpenID: https://${yourOktaOrg}/.well-known/openid-configuration
OAuth: https://${yourOktaOrg}/.well-known/oauth-authorization-server

TomTomNavigator avatar Dec 17 '21 14:12 TomTomNavigator