What the user sees
https://secrets.example.com/dashboard
Demo simulation — do not enter real credentials
Redirecting to login...
What's happening (HTTP)
Legend
Browser request
Server response
Server-to-server
Internal
User navigates to the app dashboard. The app checks for a valid session and finds none, so it generates a SAML AuthnRequest with a unique ID and redirects the browser to Okta.