Netskope LogoNetskope Logo
  • Security Services
  • AI Services
  • Networking Services
  • Analytics Services
  • Integrations
  • getting-started.svgGetting Started
    • Support
    • Community
    • Netskope.com
    © 2026 All Rights Reserved. Netskope Inc.
    Home
    Netskope Private Access
    Private App Management
    Configure NPA Browser-based Access
    Browser-based Access with Reverse Proxy SAML
    Configure Browser-based Access with Okta

    Configure Browser-based Access with Okta

    This document explains how to configure Okta as your IdP to work with Browser Access to perform authentication in a browser.

    1. Log in to your Netskope tenant and go to Settings > Security Cloud Platform > Reverse Proxy > SAML and click Add Account.
    2. Enter an IdP name and select Private Apps from the Applications dropdown. Enter a dummy value for SSO URL and SSO certificate and click Save.
    3. Click Netskope Settings for the new account you just created.
    4. Copy the values of ACS URL and Audience URL, and download the SAML Certificate.
    5. Log in to your Okta Admin account and go to Applications, and then click Create App Integration.
    6. Select SAML 2.0 and click Next.
    7. Enter a name for the Application and click Next.
    8. Enter your Private Apps Browser Access ACS URL and Audience URL from the Netskope tenant.
    9. Click Show Advanced Settings here and upload the certificate downloaded from Netskope using Browse files as shown. When done, click Next, select this is an internal app, and then click Save.
    10. Go to Assignments and assign this application to the users that you would like to allow access via Browser Access.
    11. Go back to Applications and copy the Sign on URL, and download the Certificate.
    12. In your Netskope tenant, go the SAML reverse proxy account created previously, and then update the IdP SSO URL and certificate retrieved from Okta. When finished, click Save.
    In this Topic
    • Configure Browser-based Access with Okta