
Get the job done with a pro
From training to full-service marketing, our community of partners can help you make things happen.
Okta Enterprise SSO Setup
Overview
Mailchimp Enterprise SSO lets all users in a Mailchimp account, with a configured private domain, sign in through your identity provider (IdP) credentials, rather than with Mailchimp passwords. If you use single sign-on (SSO) through Okta, there are steps you can take to set up your tenant prior to configuring in Mailchimp.
Before you start
Please note:
- Enterprise SSO is available to Premium accounts
- Mailchimp supports only Open ID Connect protocol (OIDC)
- You must be the Owner of the account to set up this feature
- You must have access to the Okta admin console
- Permission to create app registrations
- Permission to create client secrets
- Permission to grant admin consent for your organization
- Permission to assign users or groups to enterprise application.
- Gather the OIDC Discovery URL from Mailchimp Security Settings
Create the App Registration
- Sign in to the Okta admin console (https://-admin.okta.com/admin/dashboard ).
- Go to Applications and Resource → Applications
- Click Create App Integration.
- Select OIDC - OpenID Connect
- Select Web Application.
- Click Next.
- Enter these values:
- Name: Mailchimp Enterprise SSO
- Sign-in redirect URIs: Copy the redirect URI provided at the top of the Single Sign-On Security Settings in Mailchimp
- Assignments: If your entire organization does not currently need access, check the box Skip group assignment for now
- Click Save
- On the following page, save the Client ID and Client Secret from the next page
Assign users
Creating the Application allows you to now assign specific users to be assigned to Mailchimp. To assign an Okta user to Mailchimp:
- Select Directory → People
- Select the user you need to assign.
- Click Assign Applications.
- Ensure your users in Okta have their email property set (this email claim is what will be used to match them with their verified email in Mailchimp when enabling SSO)
- Click Save and Go Back.
- Click Done.
Note: Only users who are assigned here can sign in using this SSO application.
Collect Values for Mailchimp
We recommend referring to Okta’s documentation on how to configure OIDC.
| Mailchimp field | Okta field | Where to find it in Okta |
|---|---|---|
| Client ID | Client ID | Under Client Credentials section of the General tab |
| Client secret | Client secret | Under Client Credentials section of the General tab |
| OIDC discovery URL | Open ID Server Discovery Endpoint | Create this manually using the format "https:///.well-known/openid-configuration", where is your Okta domain. |
Enter these values in the Mailchimp Enterprise SSO settings when you are ready.
Technical Support
Have a question?
Paid users can log in to access email and chat support.