---
title: "Configuring 3rd Party IdP"
canonical: "https://docs.infoblox.com/space/BloxOneCloud/35430105/Configuring%203rd%20Party%20IdP"
format: markdown
---
<span style="color: #000000">The </span><span style="color: #000000">*3rd Party IDP*</span><span style="color: #000000"> page allows you to configure 3rd party IdP (identity provider) authentication for users with an email domain that matches the selected domain name.</span> You can use the same IdP configuration to authenticate users from multiple domains, as long as the domains match the federated configuration. <span style="color: #000000">For more information, see </span><span style="color: #000000">*[Configuring IdP Authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35398160)*</span><span style="color: #000000">. The SSO Portal currently supports SAML2.0 standard complaint IdP providers, including Okta, Azure AD, and ForgeRock</span>.

> ℹ️ **Important Note**
> ℹ️ 
> ℹ️ Information about configuring SAML federation described in this topic is relevant only to Infoblox Platform services configurable through the Infoblox Portal. This information is not applicable to NIOS or the NIOS Grid. For information about how to authenticate admins using SAML in NIOS, see *[Authenticating Admins through SAML for NIOS 8.5,](https://infoblox-docs.atlassian.net/wiki/spaces/nios85/pages/35882214)* [Authenticating Admins Using SAML for NIOS 8.4](https://infoblox-docs.atlassian.net/wiki/spaces/nios84/pages/44964771), and *[Authenticating Admins through SAML for NIOS 9.x](https://infoblox-docs.atlassian.net/wiki/spaces/nios90/pages/194446232)*.

> ⚠️ **Note**
> ⚠️ 
> ⚠️ <span style="color: #000000">If MFA (multi-factor authentication) is already activated for the selected domain, you cannot activate the 3rd party IdP until you have deactivated MFA for that domain.</span>

<span style="color: #000000">To configure 3rd party IdP settings, complete the following:</span>

1. <span style="color: #000000">*[Configuring IdP Authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35398160)*</span>
2. <span style="color: #000000">*[Generate audience keys](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35367311)*</span>
3. <span style="color: #000000">*[Create a SAML 2.0 Application for OKTA](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35366534)*</span>  
<span style="color: #000000">*or*</span>  
*[Configure SAML 2.0 Application for Microsoft Entra ID](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35366790)*  
<span style="color: #000000">*or*</span>  
*[Create SAML 2.0 Federation for ForgeRock](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35430556)*
4. <span style="color: #000000">*[Map IdP user groups to Infoblox Portal user groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35463665)*</span>
5. <span style="color: #000000">*[Test 3rd party IdP authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35367251)*</span>
6. <span style="color: #000000">*[Activate 3rd party IdP authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35463635)*</span>

<span style="color: #000000">You can also perform the following after you set up 3rd party IdP authentication:</span>

- <span style="color: #000000">*[Deactivate 3rd party IdP authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35464005)*</span>
- <span style="color: #000000">*[Reset 3rd party IdP configuration](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35367439)*</span>
- <span style="color: #000000">*[Add a chiclet to IdP-initiated SSO (OKTA) (optional)](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35431099)*</span>
- <span style="color: #000000">*[Add an IdP Application to Microsoft Azure](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35367488)*</span>