Problem statement
We have set up an Enterprise Connection with a customer using the Okta Enterprise Connection following this guide:
The connection works when the customer goes to our site and signs in using Home-Realm Discovery in the Universal Login. However, the customer would like for their IdP-initiated sign in to work for this connection.
Cause
Unfortunately, the Okta Workforce connection does not have an IdP-Initiated login option.
Solution
Set up a generic SAML connection to Okta that will accept IdP-Initiated logins. Refer to the docs on setting up a generic SAML connection.
On the Okta side, you would just want to create an application that is configured for SAML instead of OIDC and then IdP-Initiated SAML logins should be accepted from theirs to Auth0.