{"id":16983,"date":"2022-12-28T00:44:43","date_gmt":"2022-12-28T00:44:43","guid":{"rendered":"https:\/\/44.225.35.201\/testrail\/docs\/801\/user-guide\/enterprise\/configure-single-sign-on\/okta-sso-configuration\/"},"modified":"2025-10-28T14:47:04","modified_gmt":"2025-10-28T05:47:04","slug":"okta-sso","status":"publish","type":"page","link":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/user-guide\/enterprise\/configure-single-sign-on\/okta-sso\/","title":{"rendered":"Okta SSO \u8a2d\u5b9a"},"content":{"rendered":"<p>TestRail \u306e SSO \u6a5f\u80fd\u3092\u5229\u7528\u3059\u308b\u3068\u3001SAML 2.0\u3001OAuth 2.0 \u304a\u3088\u3073 OpenID Connect \u30d7\u30ed\u30c8\u30b3\u30eb\u3092\u4f7f\u7528\u3059\u308b\u4efb\u610f\u306e SSO ID \u30d7\u30ed\u30d0\u30a4\u30c0\u30fc (IDP) \u3068 TestRail \u3092\u7d71\u5408\u3067\u304d\u307e\u3059\u3002SSO \u8a2d\u5b9a\u3092\u6709\u52b9\u306b\u3057\u305f\u3089\u3001\u30d7\u30ed\u30c8\u30b3\u30eb\u3092\u9078\u629e\u3067\u304d\u307e\u3059\u3002<\/p>\n<p>\u3053\u306e\u30ac\u30a4\u30c9\u3067\u306f\u3001\u7279\u306b Okta \u30d7\u30ed\u30c8\u30b3\u30eb\u306e\u8a2d\u5b9a\u306b\u3064\u3044\u3066\u8aac\u660e\u3057\u307e\u3059\u3002\u307e\u305a\u3001Okta \u306e Web \u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u767b\u9332\u624b\u9806\u306b\u5f93\u3044\u307e\u3059\u3002<\/p>\n<pre><\/pre>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol class=\"list-colored\">\n<li aria-level=\"1\">\u7ba1\u7406\u8005\u30a2\u30ab\u30a6\u30f3\u30c8\u3067 Okta \u306b\u30b5\u30a4\u30f3\u30a4\u30f3\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><strong>Admin Console<\/strong>\u3067 <strong>[Applications ] &gt; [Applications]<\/strong> \u306b\u79fb\u52d5\u3057\u307e\u3059\u3002(\u5de6\u5074\u306e\u30d1\u30cd\u30eb\u306b\u3042\u308a\u307e\u3059)\u3002<\/li>\n<li aria-level=\"1\">[<strong>Create App Integration<\/strong>] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">\u65b0\u898f\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u7d71\u5408\u3092\u4f5c\u6210\u3057\u307e\u3059:\n<ol class=\"list-colored\">\n<li aria-level=\"2\"><strong>Sign-on method<\/strong>: <strong>OIDC \u2013 OpenID Connect<\/strong> \u3092\u9078\u629e\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"2\"><strong>Application type<\/strong>: <strong>Web Application<\/strong> \u3092\u9078\u629e\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"2\">[<strong>Next<\/strong>] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u304c\u767b\u9332\u3055\u308c\u3001\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306e\u8a73\u7d30\u306e\u8a2d\u5b9a\u306b\u30ea\u30c0\u30a4\u30ec\u30af\u30c8\u3055\u308c\u307e\u3059\u3002<\/li>\n<\/ol>\n<\/li>\n<li aria-level=\"1\">New Web App Integration:\n<ol class=\"list-colored\">\n<li aria-level=\"2\"><strong>App integration name<\/strong>: \u65b0\u3057\u3044\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u7d71\u5408\u306e\u540d\u524d\u3092\u5165\u529b\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"2\"><strong>Grant type<\/strong>:\u00a0<strong>Authorization Code<\/strong>\u00a0\u3092\u9078\u629e\u3057\u307e\u3059 \uff08\u3053\u306e\u30aa\u30d7\u30b7\u30e7\u30f3\u306f\u6700\u5927\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u3092\u63d0\u4f9b\u3057\u307e\u3059\uff09\u3002<\/li>\n<li aria-level=\"2\"><strong>Sign-in redirect URLs<\/strong>\u00a0(\u7a7a\u306e\u307e\u307e\u3067\u306f\u3044\u3051\u307e\u305b\u3093) \u2013 \u8a8d\u8a3c\u306e\u5f8c\u306b\u30ea\u30c0\u30a4\u30ec\u30af\u30c8\u3055\u308c\u308b URL \u3092\u8ffd\u52a0\u3057\u307e\u3059\u3002\u3053\u306e URL \u306f\u3001OAuth \u304a\u3088\u3073 OpenID \u306e SSO \u8a2d\u5b9a\u30da\u30fc\u30b8\u306b\u8868\u793a\u3055\u308c\u308b\u3082\u306e\u3068\u540c\u3058\u3067\u306a\u3051\u308c\u3070\u306a\u308a\u307e\u305b\u3093\u3002[\u30b7\u30f3\u30b0\u30eb \u30b5\u30a4\u30f3 \u30aa\u30f3 URL] \u30e9\u30d9\u30eb\u306e\u4e0b\u306e SSO \u8a2d\u5b9a\u30da\u30fc\u30b8\u3067\u30ea\u30c0\u30a4\u30ec\u30af\u30c8 URL \u3092\u53c2\u7167\u3067\u304d\u307e\u3059\u3002<br \/>\n\u4f8b:\u00a0<a>http:\/\/${domain}\/testrail\/index.php?\/auth\/redirect_oidc_acs<\/a><\/li>\n<li aria-level=\"2\"><strong>Sign-out redirect URL<\/strong>\u00a0(\u30aa\u30d7\u30b7\u30e7\u30f3l):\u00a0\u00a0<a>https:\/\/{domain}\/index.php<\/a><\/li>\n<li aria-level=\"2\">\u305d\u306e\u4ed6\u306e\u4efb\u610f\u306e\u60c5\u5831\u3092\u8ffd\u52a0\u3057\u3001[<strong>Save<\/strong>] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<\/ol>\n<\/li>\n<li aria-level=\"1\">\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u7d71\u5408\u306e\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u8a8d\u8a3c\u60c5\u5831\u3092\u53d6\u5f97\u3057\u307e\u3059\u3002\n<ol class=\"list-colored\">\n<li aria-level=\"2\">[<strong>General<\/strong>] \u30bf\u30d6\u306e [<strong>Client Credentials<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089 [<strong>Client ID<\/strong>] \u3092\u30b3\u30d4\u30fc\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"2\">[<strong>Client Credentials<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089 [<strong>Client secret<\/strong>] \u3092\u30b3\u30d4\u30fc\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"2\">[<strong>General Settings<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089 [<strong>Okta domain<\/strong>] \u3092\u30b3\u30d4\u30fc\u3057\u307e\u3059\u3002<\/li>\n<\/ol>\n<\/li>\n<li aria-level=\"1\">Okta \u306e\u540c\u610f\u753b\u9762\u3092\u6709\u52b9\u306b\u3057\u307e\u3059\u3002\n<ol class=\"list-colored\">\n<li aria-level=\"2\">\u5de6\u30d1\u30cd\u30eb\u304b\u3089 <strong>[Security] &gt; [API]<\/strong> \u306b\u79fb\u52d5\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"2\">[<strong>Default<\/strong>] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"2\">[<strong>Scopes<\/strong>] \u30bf\u30d6\u306b\u79fb\u52d5\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"2\"><strong>Edit OpenID<\/strong>:\u00a0<strong>User consent<\/strong>\u00a0\u2013 \u30c1\u30a7\u30c3\u30af\u3092\u30aa\u30f3\u306b\u3057\u3066\u4fdd\u5b58\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"2\"><strong>Profile<\/strong>\u00a0<strong>and email<\/strong>: <strong>User consent<\/strong> \u3092\u7de8\u96c6\u3057\u307e\u3059 \u2013 \u30c1\u30a7\u30c3\u30af\u3092\u30aa\u30f3\u306b\u3057\u3066\u4fdd\u5b58\u3057\u307e\u3059\u3002<\/li>\n<\/ol>\n<\/li>\n<\/ol>\n<\/li>\n<\/ol>\n<h2 id=\"ConfiguringSSOinOktaOpenIDConnectspan\">Okta \u3067\u306e SSO \u8a2d\u5b9a &#8211; OpenID Connect<\/h2>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol class=\"list-colored\">\n<li aria-level=\"1\">\u7ba1\u7406\u8005\u3068\u3057\u3066 TestRail \u306b\u30ed\u30b0\u30a4\u30f3\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><strong>[\u7ba1\u7406] &gt; [\u30b5\u30a4\u30c8\u8a2d\u5b9a] &gt; [SSO]<\/strong> \u306b\u79fb\u52d5\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><strong>\u8a8d\u8a3c\u30d7\u30ed\u30c8\u30b3\u30eb\u306e\u9078\u629e: [OpenID Connect<\/strong>] \u3092\u9078\u629e\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><strong>\u30b7\u30f3\u30b0\u30eb \u30b5\u30a4\u30f3 \u30aa\u30f3 URL<\/strong>: \u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306e\u65b0\u898f\u767b\u9332\u6642\u306b\u30ea\u30c0\u30a4\u30ec\u30af\u30c8 URL \u3092\u8a2d\u5b9a\u3059\u308b\u305f\u3081\u306b\u4f7f\u7528\u3055\u308c\u308b\u5024\u304c\u3042\u3089\u304b\u3058\u3081\u8a2d\u5b9a\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">\u6b21\u306e\u624b\u9806\u3067 Okta \u30a2\u30ab\u30a6\u30f3\u30c8\u306b\u30ed\u30b0\u30a4\u30f3\u3057\u3066\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306b\u30a2\u30af\u30bb\u30b9\u3057\u3001TestRail \u306b\u8a2d\u5b9a\u304c\u5fc5\u8981\u306a\u60c5\u5831\u3092\u53d6\u5f97\u3057\u307e\u3059\u3002\n<ol class=\"list-colored\">\n<li aria-level=\"1\">Okta \u306e [<strong>General<\/strong>] \u30bf\u30d6\u306b\u3042\u308b [<strong>Client Credentials<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089 [<strong>Application (client) ID<\/strong>] \u3092\u30b3\u30d4\u30fc\u3057\u3001TestRail \u306e [<strong>\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 ID<\/strong>] \u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">Okta \u306e [<strong>General<\/strong>] \u30bf\u30d6\u306b\u3042\u308b [<strong>Client Credentials<\/strong>] \u304b\u3089\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 \u30b7\u30fc\u30af\u30ec\u30c3\u30c8\u306e [<strong>Value<\/strong>] \u3092\u30b3\u30d4\u30fc\u3057\u3001TestRail \u306e [<strong>\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 \u30b7\u30fc\u30af\u30ec\u30c3\u30c8<\/strong>] \u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">Okta \u306e [<strong>General Settings<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089 Okta \u30c9\u30e1\u30a4\u30f3\u3092\u30b3\u30d4\u30fc\u3057\u3001URL\u00a0<a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/\">https:\/\/${yourOktaDomain}\/oauth2\/default\/<\/a> \u306b\u5f53\u3066\u306f\u3081\u3066 TestRail \u306e [<strong>IDP \u767a\u884c\u8005 URL<\/strong>] \u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<\/ol>\n<\/li>\n<li aria-level=\"1\"><strong>\u521d\u56de\u30ed\u30b0\u30a4\u30f3\u6642\u306b\u30a2\u30ab\u30a6\u30f3\u30c8\u3092\u4f5c\u6210<\/strong>: \u3053\u306e\u8a2d\u5b9a\u306f\u3001\u30e6\u30fc\u30b6\u30fc\u304c\u6b63\u5e38\u306b\u8a8d\u8a3c\u3055\u308c\u305f\u5834\u5408\u306b\u3001TestRail \u304c\u65b0\u3057\u3044\u30e6\u30fc\u30b6\u30fc \u30a2\u30ab\u30a6\u30f3\u30c8\u3092\u81ea\u52d5\u7684\u306b\u4f5c\u6210\u3059\u308b\u304b\u3069\u3046\u304b\u3092\u6307\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><strong>\u30db\u30ef\u30a4\u30c8\u30ea\u30b9\u30c8 \u30c9\u30e1\u30a4\u30f3<\/strong>: \u8a8d\u53ef\u3055\u308c\u3066\u3044\u306a\u3044\u7d44\u7e54\u304b\u3089\u306e\u30ea\u30af\u30a8\u30b9\u30c8\u3092\u9632\u3050\u305f\u3081\u3001\u30a2\u30ab\u30a6\u30f3\u30c8\u306e\u4f5c\u6210\u3092\u7279\u5b9a\u306e\u96fb\u5b50\u30e1\u30fc\u30eb \u30c9\u30e1\u30a4\u30f3\u3060\u3051\u306b\u5236\u9650\u3057\u307e\u3059\u30021 \u884c\u306b 1 \u30c9\u30e1\u30a4\u30f3\u3092\u5165\u529b\u3057\u307e\u3059\u3002([<strong>\u30db\u30ef\u30a4\u30c8\u30ea\u30b9\u30c8 \u30c9\u30e1\u30a4\u30f3<\/strong>] \u304c\u7a7a\u306e\u5834\u5408\u3001\u30c7\u30d5\u30a9\u30eb\u30c8\u3067\u306f\u3059\u3079\u3066\u306e\u30c9\u30e1\u30a4\u30f3\u304c\u8a31\u53ef\u3055\u308c\u307e\u3059)\u3002<\/li>\n<li aria-level=\"1\">[<strong>\u8a2d\u5b9a\u306e\u4fdd\u5b58<\/strong>] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><a href=\"#01J7C0H9VP0HQZ72KC5X759GVZ\">\u4e0b\u306e\u30bb\u30af\u30b7\u30e7\u30f3<\/a>\u306e\u8ffd\u52a0\u306e\u8a2d\u5b9a\u3092\u78ba\u8a8d\u3057\u307e\u3059\u3002<\/li>\n<\/ol>\n<\/li>\n<\/ol>\n<h2 id=\"ConfiguringSSOinOktaOAuth20span\">Okta \u3067\u306e SSO \u8a2d\u5b9a &#8211; OAuth 2.0<\/h2>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol class=\"list-colored\">\n<li aria-level=\"1\">\u7ba1\u7406\u8005\u3068\u3057\u3066 TestRail \u306b\u30ed\u30b0\u30a4\u30f3\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><strong>[\u7ba1\u7406] &gt; [\u30b5\u30a4\u30c8\u8a2d\u5b9a] &gt; [SSO]<\/strong> \u306b\u79fb\u52d5\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><strong>\u8a8d\u8a3c\u30d7\u30ed\u30c8\u30b3\u30eb\u306e\u9078\u629e: <\/strong>[<strong>Oauth 2.0<\/strong>] \u3092\u9078\u629e\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><strong>\u30b7\u30f3\u30b0\u30eb \u30b5\u30a4\u30f3 \u30aa\u30f3 URL<\/strong>:\u00a0\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306e\u65b0\u898f\u767b\u9332\u6642\u306b\u30ea\u30c0\u30a4\u30ec\u30af\u30c8 URL \u3092\u8a2d\u5b9a\u3059\u308b\u305f\u3081\u306b\u4f7f\u7528\u3055\u308c\u308b\u5024\u304c\u3042\u3089\u304b\u3058\u3081\u8a2d\u5b9a\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">\u6b21\u306e\u624b\u9806\u3067 Okta \u30a2\u30ab\u30a6\u30f3\u30c8\u306b\u30ed\u30b0\u30a4\u30f3\u3057\u3066\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306b\u30a2\u30af\u30bb\u30b9\u3057\u3001TestRail \u306b\u8a2d\u5b9a\u304c\u5fc5\u8981\u306a\u60c5\u5831\u3092\u53d6\u5f97\u3057\u307e\u3059\u3002\n<ol class=\"list-colored\">\n<li aria-level=\"1\">Okta \u306e [<strong>General<\/strong>] \u30bf\u30d6\u306b\u3042\u308b [<strong>Client Credentials<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089 [<strong>Application (client) ID<\/strong>] \u3092\u30b3\u30d4\u30fc\u3057\u3001TestRail \u306e [<strong>\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 ID<\/strong>] \u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">Okta \u306e [<strong>General<\/strong>] \u30bf\u30d6\u306b\u3042\u308b [<strong>Client Credentials<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 \u30b7\u30fc\u30af\u30ec\u30c3\u30c8\u306e [<strong>Value<\/strong>] \u3092\u30b3\u30d4\u30fc\u3057\u3001TestRail \u306e [<strong>\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 \u30b7\u30fc\u30af\u30ec\u30c3\u30c8<\/strong>] \u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">Okta \u306e [<strong>General<\/strong>] \u30bf\u30d6\u306b\u3042\u308b [<strong>General\u00a0Settings<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089 Okta \u30c9\u30e1\u30a4\u30f3\u3092\u30b3\u30d4\u30fc\u3057\u3001URL\u00a0<a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/v1\/authorize\">https:\/\/<\/a><a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/\">${yourOktaDomain}<\/a><a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/v1\/authorize\">\/oauth2\/default\/v1\/authorize<\/a> \u306b\u5f53\u3066\u306f\u3081\u3066 TestRail \u306e [<strong>\u30e6\u30fc\u30b6\u30fc\u8a8d\u53ef URI<\/strong>] \u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">Okta \u306e [<strong>General<\/strong>] \u30bf\u30d6\u306b\u3042\u308b [<strong>General Settings<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089 Okta \u30c9\u30e1\u30a4\u30f3\u3092\u30b3\u30d4\u30fc\u3057\u3001URL\u00a0<a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/v1\/token\">https:\/\/<\/a><a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/\">${yourOktaDomain}<\/a><a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/v1\/token\">\/oauth2\/default\/v1\/token<\/a> \u306b\u5f53\u3066\u306f\u3081\u3066 TestRail \u306e [<strong>\u30a2\u30af\u30bb\u30b9 \u30c8\u30fc\u30af\u30f3 URI<\/strong>] \u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">Okta \u306e [<strong>General<\/strong>] \u30bf\u30d6\u306b\u3042\u308b [<strong>General\u00a0Settings<\/strong>] \u30bb\u30af\u30b7\u30e7\u30f3\u304b\u3089 Okta \u30c9\u30e1\u30a4\u30f3\u3092\u30b3\u30d4\u30fc\u3057\u3001URL<a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/v1\/userinfo\">https:\/\/<\/a><a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/\">${yourOktaDomain}<\/a><a href=\"https:\/\/dev-33238728.okta.com\/oauth2\/default\/v1\/userinfo\">\/oauth2\/default\/v1\/userinfo<\/a> \u306b\u5f53\u3066\u306f\u3081\u3066 TestRail \u306e [<strong>\u30e6\u30fc\u30b6\u30fc\u60c5\u5831 URI<\/strong>] \u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<\/ol>\n<\/li>\n<li aria-level=\"1\"><strong>\u521d\u56de\u30ed\u30b0\u30a4\u30f3\u6642\u306b\u30a2\u30ab\u30a6\u30f3\u30c8\u3092\u4f5c\u6210<\/strong>: \u3053\u306e\u8a2d\u5b9a\u306f\u3001\u30e6\u30fc\u30b6\u30fc\u304c\u6b63\u5e38\u306b\u8a8d\u8a3c\u3055\u308c\u305f\u5834\u5408\u306b\u3001TestRail \u304c\u65b0\u3057\u3044\u30e6\u30fc\u30b6\u30fc \u30a2\u30ab\u30a6\u30f3\u30c8\u3092\u81ea\u52d5\u7684\u306b\u4f5c\u6210\u3059\u308b\u304b\u3069\u3046\u304b\u3092\u6307\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><strong>\u30db\u30ef\u30a4\u30c8\u30ea\u30b9\u30c8 \u30c9\u30e1\u30a4\u30f3<\/strong>: \u8a8d\u53ef\u3055\u308c\u3066\u3044\u306a\u3044\u7d44\u7e54\u304b\u3089\u306e\u30ea\u30af\u30a8\u30b9\u30c8\u3092\u9632\u3050\u305f\u3081\u3001\u30a2\u30ab\u30a6\u30f3\u30c8\u306e\u4f5c\u6210\u3092\u7279\u5b9a\u306e\u96fb\u5b50\u30e1\u30fc\u30eb \u30c9\u30e1\u30a4\u30f3\u3060\u3051\u306b\u5236\u9650\u3057\u307e\u3059\u30021 \u884c\u306b 1 \u30c9\u30e1\u30a4\u30f3\u3092\u5165\u529b\u3057\u307e\u3059\u3002([<strong>\u30db\u30ef\u30a4\u30c8\u30ea\u30b9\u30c8 \u30c9\u30e1\u30a4\u30f3<\/strong>] \u304c\u7a7a\u306e\u5834\u5408\u3001\u30c7\u30d5\u30a9\u30eb\u30c8\u3067\u306f\u3059\u3079\u3066\u306e\u30c9\u30e1\u30a4\u30f3\u304c\u8a31\u53ef\u3055\u308c\u307e\u3059)\u3002<\/li>\n<li aria-level=\"1\">[<strong>\u8a2d\u5b9a\u306e\u4fdd\u5b58<\/strong>] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><a href=\"#01J7C0H9VP0HQZ72KC5X759GVZ\">\u4e0b\u306e\u30bb\u30af\u30b7\u30e7\u30f3<\/a>\u306e\u8ffd\u52a0\u306e\u8a2d\u5b9a\u3092\u78ba\u8a8d\u3057\u307e\u3059\u3002\n<ol class=\"list-colored\"><\/ol>\n<\/li>\n<\/ol>\n<\/li>\n<\/ol>\n<h2 id=\"01J7C0H9VP0HQZ72KC5X759GVZ\">Okta \u3067\u306e SSO \u306e\u8ffd\u52a0\u8a2d\u5b9a \u2013 OpenID Connect \u304a\u3088\u3073 OAuth 2.0 \u30d7\u30ed\u30c8\u30b3\u30eb\u306e\u307f<\/h2>\n<p><span>\u00a0<\/span><a href=\"https:\/\/support.okta.com\/help\/s\/article\/error-idx-error-code-no-matching-policy-you-are-not-allowed-to-access-this-app-to-request-access-contact-an-admin?language=en_US\" target=\"_blank\" rel=\"noopener noreferrer\">Okta \u306e\u8a18\u4e8b<\/a>\u3067\u8aac\u660e\u3055\u308c\u3066\u3044\u308b\u3088\u3046\u306b\u3001OpenID \u304a\u3088\u3073 OAuth \u30d7\u30ed\u30c8\u30b3\u30eb\u3092\u4f7f\u7528\u3059\u308b\u30a4\u30f3\u30b9\u30bf\u30f3\u30b9\u3067\u306f\u3001\u6b21\u306e\u8ffd\u52a0\u624b\u9806\u304c\u5fc5\u8981\u3067\u3059\u3002<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol class=\"list-colored\">\n<li aria-level=\"1\">Okta \u7ba1\u7406\u30dd\u30fc\u30bf\u30eb\u3092\u958b\u304d\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\"><span>[<\/span><strong>Security]<\/strong><span>\u00a0&gt;<\/span><span>\u00a0[<\/span><strong>API]<\/strong><span> \u30da\u30fc\u30b8\u3092\u958b\u304d\u3001<\/span><span>[<\/span><strong>Authorization Servers]<\/strong><span> \u30bf\u30d6\u3067\u8a8d\u8a3c\u30b5\u30fc\u30d0\u30fc\u306e\u5074\u306b\u3042\u308b<\/span><span>\u00a0[<\/span><strong>Edit]<\/strong><span> \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/span><\/li>\n<li aria-level=\"1\">\u958b\u3044\u305f\u30da\u30fc\u30b8\u3067<span>\u00a0[<\/span><strong>Access Policies<\/strong>]<span> \u30bf\u30d6\u306b\u79fb\u52d5\u3057\u3001[<\/span><strong>Add Policy]<\/strong> \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">[<strong>Name]\u3001<\/strong>[<strong>Description<\/strong>]<span>\u00a0\u30d5\u30a3\u30fc\u30eb\u30c9\u306b\u5165\u529b\u3057\u3001[<\/span><strong>Create Policy<\/strong>] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">\u65b0\u3057\u304f\u4f5c\u6210\u3055\u308c\u305f\u30dd\u30ea\u30b7\u30fc\u3067<span>\u00a0[<\/span><strong>Add Rule]<\/strong> \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">\u8868\u793a\u3055\u308c\u305f\u30c0\u30a4\u30a2\u30ed\u30b0\u3067<span>\u00a0[<\/span><strong>Rule Name]<\/strong><span>\u00a0\u30d5\u30a3\u30fc\u30eb\u30c9\u306b\u5165\u529b\u3057\u307e\u3059\u3002\u4ed6\u306e\u8a2d\u5b9a\u306f\u305d\u306e\u307e\u307e\u306b\u3059\u308b\u304b\u3001\u5fc5\u8981\u306b\u5fdc\u3058\u3066\u5909\u66f4\u3057\u3001[<\/span><strong>Create Rule<\/strong>] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<\/ol>\n<\/li>\n<\/ol>\n<h2 id=\"ConfiguringSSOinOktaSAML20span\">Okta \u3067\u306e SSO \u8a2d\u5b9a &#8211; SAML 2.0<\/h2>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol class=\"list-colored\">\n<li aria-level=\"1\">Okta \u306b\u7ba1\u7406\u8005\u3068\u3057\u3066\u30ed\u30b0\u30a4\u30f3\u3057\u3001<strong>[Admin] &gt; [Applications]<\/strong> \u30a8\u30ea\u30a2\u306b\u79fb\u52d5\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">[<strong>Add Application<\/strong>] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">[<strong>Create New App<\/strong>] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u3066 [<strong>SAML 2.0<\/strong>] \u3092\u9078\u629e\u3057\u3001[<strong>Create<\/strong>] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u3066\u78ba\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">App \u306b\u540d\u524d\u3092\u4ed8\u3051\u307e\u3059 &#8211; \u305f\u3068\u3048\u3070\u300cTestRail\u300d\u3068\u5165\u529b\u3057\u3001\u5fc5\u8981\u306b\u5fdc\u3058\u3066\u30ed\u30b4\u3092\u30a2\u30c3\u30d7\u30ed\u30fc\u30c9\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">[<strong>Next<\/strong>] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">TestRail \u306b\u30ed\u30b0\u30a4\u30f3\u3057\u3001<strong>[\u7ba1\u7406] &gt; [\u30b5\u30a4\u30c8\u8a2d\u5b9a]<\/strong> \u30b3\u30f3\u30bd\u30fc\u30eb\u306e [SSO] \u30da\u30fc\u30b8\u306b\u79fb\u52d5\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">TestRail \u306e SSO \u8a2d\u5b9a\u30da\u30fc\u30b8\u304b\u3089 [<strong>\u30a8\u30f3\u30c6\u30a3\u30c6\u30a3 ID<\/strong>] \u3092\u30b3\u30d4\u30fc\u3057\u3066 Okta \u306e [<strong>Audience URL (SP Entity ID)<\/strong>] \u30d5\u30a3\u30fc\u30eb\u30c9\u306b\u8cbc\u308a\u4ed8\u3051\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">TestRail \u306e SSO \u8a2d\u5b9a\u30da\u30fc\u30b8\u304b\u3089 [<strong>\u30b7\u30f3\u30b0\u30eb \u30b5\u30a4\u30f3 \u30aa\u30f3 URL<\/strong>] \u3092\u30b3\u30d4\u30fc\u3057\u3066 Okta \u306e [<strong>Single sign on URL<\/strong>] \u30d5\u30a3\u30fc\u30eb\u30c9\u306b\u8cbc\u308a\u4ed8\u3051\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">Okta \u306e [<strong>Use this for Recipient URL and Destination URL<\/strong>] \u30c1\u30a7\u30c3\u30af\u30dc\u30c3\u30af\u30b9\u306f\u30aa\u30f3\u306e\u307e\u307e\u306b\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">[<strong>Name ID format<\/strong>] \u304a\u3088\u3073 [<strong>Application Username<\/strong>] \u30d5\u30a3\u30fc\u30eb\u30c9\u306f\u7121\u8996\u3057\u3066\u304b\u307e\u3044\u307e\u305b\u3093\u3002<\/li>\n<li aria-level=\"1\">Okta \u306e<strong>\u5c5e\u6027\u30b9\u30c6\u30fc\u30c8\u30e1\u30f3\u30c8<\/strong>\u3092\u6b21\u306e\u3088\u3046\u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<br \/>\n<table class=\"table table--hover\">\n<thead>\n<tr>\n<th style=\"width: 141.016px;\">\u5c5e\u6027\u540d<\/th>\n<th style=\"width: 193.021px;\">\u5c5e\u6027\u5024<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td style=\"width: 132.995px;\">FirstName<\/td>\n<td style=\"width: 185px;\">user.firstName<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 132.995px;\">LastName<\/td>\n<td style=\"width: 185px;\">user.lastName<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 132.995px;\">Email<\/td>\n<td style=\"width: 185px;\">user.email<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><!-- START warning --><\/p>\n<div class=\"callout callout--warning\">\n<p id=\"01G80AR7MZ5QD2HMYPGC1NRYX5\" class=\"callout__title callout__icon\"><em class=\"fas fa-exclamation-triangle\">\u00a0<\/em>\u4e0a\u306e\u5024\u306f\u5927\u6587\u5b57\/\u5c0f\u6587\u5b57\u304c\u533a\u5225\u3055\u308c\u307e\u3059\u3002<\/p>\n<\/div>\n<p><!-- END warning --><\/li>\n<li aria-level=\"1\">Okta \u3067 [<strong>Next<\/strong>] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u3001\u5fc5\u8981\u306b\u5fdc\u3058\u3066\u8cea\u554f\u3084\u4ed6\u306e\u30d5\u30a3\u30fc\u30eb\u30c9\u306b\u8a18\u5165\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">\u7d42\u4e86\u3059\u308b\u304b\u3001\u307e\u305f\u306f Okta \u306e [<strong>Sign On<\/strong>] \u30bf\u30d6\u3067\u3001[<strong>View Setup Instructions<\/strong>] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u3066\u3001TestRail \u306b\u5fc5\u8981\u306a URL \u3068\u8a3c\u660e\u66f8\u3092\u8868\u793a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">Okta \u306e [<strong>Identity Provider Single Sign-On URL<\/strong>] \u304a\u3088\u3073 [<strong>Identity Provider Issuer URL<\/strong>] \u306e\u5024\u3092\u30b3\u30d4\u30fc\u3057\u3001TestRail \u306e [<strong>IDP SSO URL<\/strong>] \u304a\u3088\u3073 <strong>[IDP \u767a\u884c\u8005 URL<\/strong>] \u30d5\u30a3\u30fc\u30eb\u30c9\u306b\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">Okta \u304b\u3089 X.509 \u8a3c\u660e\u66f8\u3092\u30b3\u30d4\u30fc\u3057\u3066 TestRail \u306b\u8cbc\u308a\u4ed8\u3051\u307e\u3059 (\u307e\u305f\u306f\u8a3c\u660e\u66f8\u3092\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u3066\u30a2\u30c3\u30d7\u30ed\u30fc\u30c9\u3057\u307e\u3059)\u3002<\/li>\n<li aria-level=\"1\">[<strong>\u4fdd\u5b58<\/strong>] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002\u63a5\u7d9a\u3092\u30c6\u30b9\u30c8\u3057\u3066\u8a2d\u5b9a\u3092\u78ba\u8a8d\u3057\u307e\u3059\u3002<\/li>\n<li aria-level=\"1\">TestRail \u306e\u8a2d\u5b9a\u3092\u884c\u3063\u3066\u3044\u308b\u7ba1\u7406\u8005\u304c Okta \u3067\u4f5c\u6210\u3057\u305f App \u306b\u5272\u308a\u5f53\u3066\u3089\u308c\u3066\u3044\u308c\u3070\u3001\u63a5\u7d9a\u30c6\u30b9\u30c8\u306f\u6210\u529f\u3059\u308b\u306f\u305a\u3067\u3059\u3002\u3053\u308c\u3067\u30b7\u30f3\u30b0\u30eb\u30b5\u30a4\u30f3\u30aa\u30f3 (SSO) \u30e2\u30fc\u30c9\u3067 TestRail \u3092\u4f7f\u7528\u3059\u308b\u6e96\u5099\u304c\u6574\u3044\u307e\u3057\u305f\u3002<\/li>\n<\/ol>\n<\/li>\n<\/ol>\n","protected":false},"excerpt":{"rendered":"<p>TestRail \u306e SSO \u6a5f\u80fd\u3092\u5229\u7528\u3059\u308b\u3068\u3001SAML 2.0\u3001OAuth 2.0 \u304a\u3088\u3073 OpenID Connect \u30d7\u30ed\u30c8\u30b3\u30eb\u3092\u4f7f\u7528\u3059\u308b\u4efb\u610f\u306e SSO ID \u30d7\u30ed\u30d0\u30a4\u30c0\u30fc (IDP) \u3068 TestRail \u3092\u7d71\u5408 [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":0,"parent":14692,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_et_pb_use_builder":"","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"class_list":["post-16983","page","type-page","status-publish","hentry"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/wp-json\/wp\/v2\/pages\/16983","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/wp-json\/wp\/v2\/comments?post=16983"}],"version-history":[{"count":30,"href":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/wp-json\/wp\/v2\/pages\/16983\/revisions"}],"predecessor-version":[{"id":29959,"href":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/wp-json\/wp\/v2\/pages\/16983\/revisions\/29959"}],"up":[{"embeddable":true,"href":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/wp-json\/wp\/v2\/pages\/14692"}],"wp:attachment":[{"href":"https:\/\/docs.testrail.techmatrix.jp\/testrail\/docs\/9\/wp-json\/wp\/v2\/media?parent=16983"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}