WordPress does not independently authenticate users when Okta and WordPress use Single Sign-On (SSO). Instead, it uses Okta to verify a user's identity.
Consider it like this:
The program that the user wants to use is called WordPress.
The trusted identity provider (IdP) that confirms the identity of the user is Okta.
SAML 2.0 is the protocol that securely sends the authentication result from Okta to WordPress.
The Components
1. User
The employee, administrator, editor, or customer trying to log in.
Example:
John
John wants to access:
Okta organisation:
WordPress sees no active session.
Step 2
Instead of showing the standard login form, WordPress redirects John to Okta.
company.okta.com
Step 3
Okta displays its login page.
Email:
Password
SOCIAL SHARE CARD GENERATOR