---
title: "OKTA - Configuring OAuth 2.0 authentication"
canonical: "https://helpcenter.mindproapps.com/space/SDC/2347729785/OKTA%20-%20Configuring%20OAuth%202.0%20authentication"
format: markdown
---
> ℹ️ **Summary: **This section shows how to create a new application in Okta to authenticate via OAuth 2.0 method.

### **Registering Mindpro Sync application in Okta**


To establish a connection with Okta via OAuth 2.0, it is required to register Mindpro Sync as a valid application in Okta. 

To perform this action, access your Okta instance’s admin panel and, from the “Applications” menu, select the “Applications” sub-item:

![Mindpro-1710775699559-1x.png](media://23167350-6300-483e-9948-4721cfcd03cc)


Then, click on the “Create App Integration” button, as follows:

![Mindpro-1710775574373-1x.png](media://4fbdb7f4-ba31-4951-bceb-855ef8457f6e)

A pop-up window is displayed: 

- From the “Sign-in method” section, select “**OIDC - OpenID Connect**”.
- From the “Application type” section, select “**Web Application**”:

![Mindpro-1710780184034-1x.png](media://f53aeb41-92b7-4b12-a0c2-b74338a7601a)


A New Application form is displayed. Add an application name (i.e: "Mindpro Sync") and, from the “Grant type” section, check the “**Refresh Token**” checkbox:

![Mindpro-1710780758868-1x.png](media://315304e8-41ba-4829-a2b3-a03248a543a3)


Scroll down the form and, from the “Sign-in redirect URIs” section, inform the following address:

> ℹ️ [https://adconnector.mindproapps.com/okta/auth](https://adconnector.mindproapps.com/okta/auth)

![Mindpro-1710780971626-1x.png](media://984e0def-b3b0-4bf3-a429-24eb0d3f1cbb)


Scroll down the form again and, from the “Assignments” section, select the “**Skip group assignment for now**” option. Then, click “Save”:

![Mindpro-1710781381337-1x.png](media://9e11a220-0ba9-407f-bac2-2521a34ad8f6)


The application screen is created. Then, from the “Client Credentials” section, click on the “Edit” link next to the section title and check the “**Require PKCE as additional verification**” checkbox. 

Then, click on the “Save” button below the “Client Secrets” field: 

![Mindpro-1710781658773-1x.png](media://c83ec9ad-a1b1-41a4-8e5d-5a97b68cd396)


Scroll down to the “General Settings” section and click on the “Edit” link next to the section title.

From the “Refresh Token” section, select the “**Rotate token after every use**” option. Keep the grace period in 30 seconds:

![Mindpro-1710782125067-1x.png](media://d04efa6b-6a4b-45a8-b12e-a36ea621563e)

Click on the “Save” button from the bottom of the form.


With the settings saved, go to the “Assignments” tab. 

Click on the “Assign” button and select the “Assign to People” option:

![Mindpro-1710782571253-1x.png](media://32bed1ab-f036-47f1-aa19-79a9d80613f3)


A pop-up window is displayed with a list of users. Select the ones you want to give access to and click on the related “**Assign**” link on the right side of the user’s names:

![Mindpro-1710782783167-1x.png](media://2546a4c0-ba5d-4dbb-af0a-569d0d1305bb)


For each user assigned, a pop-up window will be displayed with the user’s profile information. You can optionally edit the data. When done, click on the **“Save and Go Back”** button at the bottom of the window:

![Mindpro-1710782982589-1x.png](media://4990864b-6d04-4d32-9804-2cf74427672b)


You will be redirected to the user's list and the saved user is now marked as “Assigned”. Repeat this process for all users you want to interact with the application and click “Done”: 

![Mindpro-1710783174325-1x.png](media://7144598e-a387-49cd-8a94-255cc3efc8b6)


Once you are back to the “Assignments” screen, select the “**Okta API Scopes”** tab:

![Mindpro-1710783380185-1x.png](media://3b0c2476-9663-4d6d-aaf0-f90865ff23d1)


Scroll down to find the **“okta.schemas.read” **and “**okta.users.read**” options. Then, click on the related “Grant” link for both:

![Mindpro-1734011009397-1x.png](media://32ad3dbc-d9e4-419f-9f88-2baf4928b0fb)


> ℹ️ This is the permission level recommended for the users to use the application. You can select other permissions if your process requires them.


Done!

Now you can go back to the “General” tab and copy the credentials to use on the Mindpro Sync’s [connection screen](https://mindpro.atlassian.net/wiki/spaces/SDC/pages/2347729715)!

![Mindpro-1710783991005-1x.png](media://d5769b00-23cb-4b5b-91f6-b1d6888aa2f8)



---

### **Need any help?**

Didn’t find what you were looking for? Raise a ticket [here](https://mindpro.atlassian.net/servicedesk/customer/portal/3) or get in touch at [support@mindproapps.com](mailto:support@mindproapps.com)