SSO + Okta + Keycloak + SAML2.0

Okta

  1. Login using Okta developer account
  2. Created an SAML2.0 application (Create App Integration) and added required details like SP entity Id, SSO URL etc. No relay state.
  3. Assigned users
  4. Downloaded IDP metadata from Sign ON option

Keycloak
5) Went to Keycloak > created RealM
6) Created client. Added Valid Redirect URL
7) Added IDP Initiated SSO URL Name
Saved.
8) Created IDP with provider SAML2.0. Loaded IDP - Okta metadata for it
9) Mapped First Login Flow as Browser. Browser First Login Flow has few properties mapped like IDP
10) Created Authentication named as Browser and added few properties like IDP etc. Mapped this browser to IDP above.

Then Taken App Embed Link

e.g.
https://dev-67017055.okta.com/home/dev-67017055_oventussaml_6/0oa4n1tw59pfrh8XF5d7/aln4n1y8ziZIEGvi25d7

And tried to test SSO but I am getting below given error. Redirect happens but finally I am seeing,