Skip to content
CBT Nuggets
DemoBook a Demo

Identity & SSO integration

Okta integration

Single sign-on through your Okta tenant. Engineers log in with their existing Okta credentials; admins manage access from the Okta admin console.

Status: Generally available · Availability: CBT Nuggets Teams

What it does

How the Okta integration works

CBT Nuggets sits behind your Okta tenant as a SAML 2.0 service provider. Engineers click the CBT Nuggets tile in their Okta dashboard and land in the platform already authenticated. No separate password, no extra account setup.

Admins control access from the Okta admin console: assign the CBT Nuggets app to the appropriate group, and every member of that group gets a CBT Nuggets seat. Remove the user from the group in Okta and CBT Nuggets access ends with the next session.

Just-in-time provisioning means the first login from an authorized Okta user creates the matching CBT Nuggets account automatically. There is no manual onboarding step on the CBT Nuggets side.

Compliance & tier

Where this integration fits in your subscription and your audit trail

Available on

  • CBT Nuggets Teams

Tier availability matches the Okta integration scope your CBT Nuggets account team is authorized to enable. Talk to sales for non-standard configurations.

Compliance frameworks

No specific compliance framework attestations apply to this integration. See the Trust Center for the platform-level posture.

Setup

Wire up Okta with your admin team

  1. Add the CBT Nuggets SAML app in Okta

    From the Okta admin console, browse the App Catalog for 'CBT Nuggets' and add the SAML 2.0 application. Okta pre-fills the SSO URL and audience URI for you.

  2. Assign the app to your CBT Nuggets group

    Assign the application to the Okta group that represents your CBT Nuggets-licensed users. Group membership is the single source of truth for access.

  3. Send your IdP metadata to your CBT Nuggets account team

    Download the Identity Provider metadata XML from Okta and share it with your CBT Nuggets customer success contact. They wire it into your tenant.

  4. Test with a pilot user

    Add one user to the CBT Nuggets Okta group and confirm they can sign in from their Okta dashboard. Once verified, roll out to the full group.

Prerequisites

What you need on your side

  • Okta admin access on your tenant.
  • A CBT Nuggets Team subscription (SSO is included at the Team tier).
  • An Okta group whose membership matches your intended CBT Nuggets seat assignment.

Okta integration FAQ

Common procurement and admin questions about the Okta integration.

Does this require an Enterprise contract?

No. Okta SSO is included with the Team plan. There is no upcharge for SAML and no higher tier to buy.

Can we provision users automatically through Okta?

Yes. Just-in-time provisioning is on by default. The first SAML login from an authorized Okta user creates the matching CBT Nuggets account.

What happens when we remove someone from the Okta group?

Their next CBT Nuggets session terminates and they cannot re-authenticate. Your seat count releases automatically on the next billing cycle.

Ready to wire it up?

Get a live Okta demo on a real CBT Nuggets tenant

Procurement-friendly. SSO config walked through end-to-end. Compliance artifacts available on request.