Okta Enterprise Connection not able to do IdP-Initiated Login

Problem statement

We have set up an Enterprise Connection with a customer using the Okta Enterprise Connection following this guide:

The connection works when the customer goes to our site and signs in using Home-Realm Discovery in the Universal Login. However, the customer would like for their IdP-initiated sign in to work for this connection.

Cause

Unfortunately, the Okta Workforce connection does not have an IdP-Initiated login option.

Solution

Set up a generic SAML connection to Okta that will accept IdP-Initiated logins. Refer to the docs on setting up a generic SAML connection.

On the Okta side, you would just want to create an application that is configured for SAML instead of OIDC and then IdP-Initiated SAML logins should be accepted from theirs to Auth0.