LogoLogo
Download Free TrialLive DemoGet a QuoteContact Us
v7.0 Thinfinity® Remote Workspace
v7.0 Thinfinity® Remote Workspace
  • Thinfinity® Remote Workspace
  • About This Document
  • Introduction
  • What's new in Thinfinity® Remote Workspace
  • Architecture
  • Security
  • Getting Started Section
    • Getting Started
    • Installing Thinfinity® Remote Workspace
    • Customizing Thinfinity® Remote Workspace
      • Setting the Access Security Level
      • Testing Internal Access
      • Configuring Internet Access
      • Mapping Remote Drives
        • Intermediate Disks
        • Shared Folders
    • After Customization
      • Connecting to a Desktop
      • Connecting to an application
      • Connecting to an Application (old)
      • Performing a File Transfer
        • Navigating
        • File Options
        • Remote Folder Area Options
        • Downloading and Uploading files
    • Supported RDP Shortcut Keys
    • Using Thinfinity® Remote Workspace for the first time
      • Verifying the Communication Settings
      • Connecting to a desktop
  • Advanced Settings Section
    • Gateway Manager
      • Managing the SSL Certificate
        • A Self-Signed Certificate
        • A CA Certificate
    • Thinfinity® Remote Workspace Configuration Manager
      • General
      • Broker
      • Authentication
        • Radius
          • Settings
          • Mappings
        • OAuth 2.0
          • Methods
          • Settings
          • Mappings
          • Configure OAuth with Okta
          • Configure OAuth with Auth0
        • TOTP (Time-based One-time Password)
          • TOTP Settings
        • DUO Authentication Method Settings
          • How to configure DUO
        • SAML Authentication Method Settings
          • Configure SAML with Okta
          • Configure SAML with Centrify
      • Access Profiles
        • How to create an Access Profile connection
          • RDP Access Profile
            • Creating an RDP Access Profile
            • Editing an RDP Access Profile
            • Disabling an RDP Access Profile
            • Removing an RDP Access Profile
          • RDS Web Feed Access Profile
            • Creating an RDS Web Feed Access Profile
            • Editing an RDS Web Feed Access Profile
            • Disabling an RDS Web Feed Access Profile
            • Removing an RDS Web Feed Access Profile
          • VNC/RFB Access Profile
            • Creating a VNC/RFB Access Profile
            • Editing a VNC/RFB Access Profile
            • Disabling a VNC/RFB Access Profile
            • Removing a VNC/RFB Access Profile
          • Telnet/SSH Access Profile
            • Creating a Telnet/SSH Access Profile
            • Editing a Telnet/SSH Access Profile
            • Disabling a Telnet/SSH Access Profile
            • Removing a Telnet/SSH Access Profile
          • Web Link Access Profile
            • Creating a Web Link Access Profile
            • Editing a Web Link Access Profile
            • Disabling a Web Link Access Profile
            • Removing a Web Link Access Profile
          • Web VPN Access Profile
            • Creating a Web VPN Access Profile
            • Editing a Web VPN Access Profile
            • Disabling a Web VPN Access Profile
            • Removing a Web VPN Access Profile
          • Web Folder Access Profile
            • Creating a Web Folder Access Profile
            • Editing a Web Folder Access Profile
            • Disabling a Web Folder Access Profile
            • Removing a Web Folder Access Profile
          • Label Access Profile
            • Creating a Label Access Profile
            • Editing a Label Access Profile
            • Removing a Label Access Profile
        • The '[+]' Access Profile
        • RDP Profile Editor
          • General
            • Setting up a Hyper-V Profile
            • Setting up an RDS Collection Profile
          • Display
          • Resources
          • Program
          • Experience
          • Advanced
          • Printer
          • Permissions
          • Restrictions
          • Access Hours
          • Authentication Methods
        • VNC/RFB Profile Editor
          • General
          • Display
          • Permissions
          • Restrictions
          • Access Hours
          • Authentication Methods
        • Telnet/SSH Profile Editor
          • General
          • SSL
          • SSH
          • Display
          • Options
          • Permissions
          • Restrictions
          • Access Hours
          • Authentication Methods
        • Web Link Profile Editor
          • General
          • Permissions
          • Restrictions
          • Access Hours
          • Authentication Methods
        • Web VPN Profile Editor
          • General
          • Permissions
          • Restrictions
          • Access Hours
          • Authentication Methods
        • Web Folder Profile Editor
          • General
          • Permissions
          • Restrictions
          • Access Hours
          • Authentication Methods
        • Multi Terminal
      • Folders
      • Permissions
      • VirtualUI
      • Multi Terminal
    • Thinfinity® Remote Workspace Admin User Interface
      • Web Manager
        • Web Interface
        • Analytics
          • Sessions
          • Connections
          • Logins
          • Browsers
          • Filter
          • Configuring MS SQL Server
            • Analytics Tables Reference
        • Connections
          • RDP
            • Connecting to an application
            • Connecting to a Desktop
          • How to create a VNC connection
          • How to SSH
          • Web Folder
          • Labels
          • Edit Web Profiles
            • General
            • Display
            • Resources
            • Program
            • Experience
            • Advanced
            • Access Hours
            • Permissions
          • Multi Terminal
          • Thinfinity VNC
            • Connecting to a Thinfinity VNC Instance
            • Configuring the Thinfinity VNC Agent to work with Workspace
    • Advanced Features
      • Bidirectional Audio Redirection
      • Remote Active Directory
        • How to install and configure Thinfinity® Remote AD Services
        • Active Directory credentials mapping
      • WebBridge - Direct File Transfer
        • How to install Thinfinity® WebBridge
        • WebBridge: User Experience
      • Multi-Monitor
        • How to enable Multi-Monitor
        • User Interfac
      • Redirecting Devices
        • USB Redirection
        • Printer & Scanner Redirection
          • How to install and use the Thinfinity Remote Printer Agent
      • Web Settings
        • Extend the Thinfinity® Workspace Toolbar
      • Customizing the Toolbar
        • Using web.settings.js
        • Using the 'connect' Method
      • Remote FX
      • GFX and H264 Support
        • How to Enable H264 on your Access Profile
        • Preparing a Remote Desktop for H264 support
      • Save Session
        • Record a Session
        • Play Recorded Sessions
      • Multi-touch Redirection
      • Enhanced Browser and DPI Support
        • Model Inheritance
        • Property Reference
        • The Calculation Process
        • Examples
      • Silent Install Options
      • Customize Translation
  • License Manager
    • License Activation
    • Proxy Activation
    • Get a new Trial Serial Number
    • Activate a Serial Number Online
    • Activate a Serial Number Offline
    • Registering Your License With The License Server Manager
  • Credentials Management
    • User-based Access Profiles
    • Credentials Management
  • Mobile Devices Section
    • Mobile Devices
    • Getting into Thinfinity®
    • Mouse Control
    • Keyboards and Toolbars
    • Gestures
    • Disconnecting from Thinfinity®
    • iPad Application
  • Scaling and Load Balancing Section
    • Scaling & Load Balancing
    • Scaling and Load Balancing Configurations
    • Installing Components
    • Configuring a Load Balancing Scenario
    • How to configure your license
    • Secondary Broker Pool
      • Architecture
      • How To Install a Secondary Broker
      • How To Add a Pool in the Primary Broker
    • Agent Mode
      • Installation
      • Configuration
        • Automation script for parameters configuration
  • Integrating Thinfinity® Remote Workspace Section
    • Integrating Thinfinity® Remote Workspace
    • External Authentication
      • Apikey
    • Customizing the Web Interface
      • Changing the Logo
      • Customizing the Web Files
      • Files Location
    • Web Services API
      • Architecture
      • Installing the Web Service
      • Setting up the Communication Settings
      • Profiles Web Service
        • Methods
        • Types
          • The WS Profile type
        • The Demo Applications
      • Analytics Web Service
        • Methods
        • Types
          • WSQueryInfo
          • WSQueryRange
          • WSDBLoginRecord
          • WSSessionRecord
          • WSDBConnectionRecord
          • WSDBBrowserRecord
        • The Demo Application
    • One-Time-URL
      • Configuring the Connection
      • Enabling Features
    • Thinfinity® RemoteAD API reference
    • Thinfinity® REST API Reference
  • Cloud Automation
    • How to enable the VDI Manager
    • Instances
    • Instance Usage
    • Configuration
      • Credentials
      • Templates
      • Provisioning
      • Planner
      • Pre-existing VMs
  • Resource Reservation
    • Enable Resource Reservation
    • Attendees
    • Organizers
  • User guide Section
    • User Guide
    • Features
      • File Transfer
        • Navigating
        • File Options
        • Remote Folder Area Options
        • Downloading and Uploading files
      • Remote Printer
      • Remote Sound
      • Share Session
      • Mapped Drives
    • Disconnecting
Powered by GitBook
On this page
  1. Advanced Settings Section
  2. Thinfinity® Remote Workspace Configuration Manager
  3. Authentication
  4. OAuth 2.0

Configure OAuth with Okta

PreviousMappingsNextConfigure OAuth with Auth0

Last updated 2 years ago

How to set up multifactor authentication to your environment or virtualized application.

In this quick tutorial, we will show how to properly configure Okta OAuth 2.0 for Thinfinity® Remote Workspace:

  • Navigate to your Okta space, go to the Applications tab, and create a new application using the 'Create New App' button:

  • Select 'OpenID Connect' as the Authentication Method:

  • Give the application a name, and type in the URL you use to reach Thinfinity® Remote Workspace. Then press 'Save':

  • You should be redirected to the Application Settings. In here, press the 'General' button, and edit the 'Login information'.

  • Configure the 'Initiate login URI' field, by adding the Thinfinity® Remote Workspace website address and “/Okta” at the end of the URL:

  • Copy and paste both 'Client ID' and 'Client Secret' for future references:

  • Click on the 'Assignments' tab and add your users to the Application:

  • Now, open the Thinfinity® Remote Workspace Configuration Manager and navigate to the 'Authentication' tab. Click on OAuth 2.0 and choose 'Okta':

  • Enter your 'Client ID' and 'Client Secret':

  • Click on the 'Server' tab and add the following parameters:

Authorization URL: https://[MyOktaSpace].okta.com/oauth2/v1/authorize

Parameters: scope=openid+profile&state=okta

Token Validation Server URL: https://[MyOktaSpace].okta.com/oauth2/v1/token

Profile Information Server URL: https://[MyOktaSpace].okta.com/oauth2/v1/userinfo

Login username value in returned Json: preferred_username

You’ll also need to change the name of the Authentication Method to 'Okta' (Or to the URL you configure in the Initiate Login URI)

Press 'OK' after you finish configuring the Authentication Method

  • Click on the 'Mappings' tab and then press 'Add' under the Authentication ID Mask.

  • Add the email address of the Okta user you want to validate and press 'Ok'.

  • Then, under the 'Associated Permissions' field, press on the 'Add' button and search for the Active Directory User:

After you add the appropriate mappings, click on the 'Apply' button.

  • Navigate to the Thinfinity® Remote Workspace landing page, and you should see the 'Sign in with Okta' option listed as an Authentication Method: