SaaS Account Integration by Bundle (SCIM IdP Integration with Bundle) Setup Guide

Integrate Bundle with TrustLogin to Reduce the Effort of ID Management

Note: This feature is intended for customers with a contract for freee Co., Ltd.'s Bundle service.

"SCIM IDP Integration" is a feature that uses the SCIM protocol to
synchronize ID information from Bundle to TrustLogin.

This guide explains how to configure integration with Bundle using SCIM IDP Integration.

Note: A TrustLogin Pro plan or optional contract is required to use this feature. For pricing, see here

1. TrustLogin-side Configuration

Integration Steps

  1. Log in to TrustLogin, then from the "Admin Page > Settings > Optional Features" menu,
    open "Settings" to the right of "SCIM IDP Integration".
    01.png

  2. Open "SCIM Source Configuration to Add".
    02.png

  3. Set any name you like and click "Save".
    03.png

  4. Open the source configuration you created.
    04.png

  5. "SCIM Endpoint" and the value obtained from "Generate Credentials"—make a note of them.
    (Used in the Bundle-side configuration)
    05.png
    Note: If you generate credentials, the existing credentials will no longer be usable.
      If this is not a problem, proceed by clicking "Yes" in the screen below.
    06.png
    Please make a note of the displayed value.
    07.png

2. Bundle-side Configuration

These are the steps to integrate the user information registered in Bundle with the TrustLogin user information.
This is explained in the following two stages.

2-1. Credential Configuration and User Information Review (Temporary Sync)
2-2. User Provisioning Operations (Continuous Sync)

Note: For detailed configuration and operation instructions on the Bundle side,
 please check with the provider of Bundle (freee Co., Ltd.).

2-1. Credential Configuration and User Information Review (Temporary Sync)

  1. From the Bundle admin screen, go to "App Catalog" and select the "GMO TrustLogin" app.
    08.png


  2. Proceed to "Add Integration".
    09.png

     
  3. TrustLogin Configuration > enter the values obtained in Setup Step 5.
    Enter the value of TrustLogin's "SCIM Endpoint" into the "SCIM Endpoint" field,
    and the value obtained from "Generate Credentials" into the "Token" field, then click "Add".
    10.png
     
  4. The TrustLogin user information is retrieved and displayed.
    Note: Users are matched based on their email address.
    Note: User information registered only in TrustLogin is displayed as a "shadow account" on the Bundle side.
    11.png


2-2. User Provisioning (Continuous Sync)

By performing this operation, the TrustLogin user comes under the control of Bundle.

① Create a New TrustLogin User / Sync with an Existing TrustLogin User

  1. On the Bundle admin screen, select the member you want to sync from "Members" to open the member details screen.
    20.png
     

  2. Select "Apps in Use" from the left-side menu,
    then click "Add account to GMO TrustLogin" from the "Perform Action" button.
    The sync process starts, and a user is created in TrustLogin (or synced, if one already exists).
    21.png

② Bulk Sync (by Group)

By using the "Access Profile" feature on the Bundle side, you can perform provisioning operations on a per-group basis.

Create an access profile for "GMO TrustLogin" and add the created access profile to a group.
This will perform the "Add account to GMO TrustLogin" operation for members who match the group's rules
(or members who were manually added to the group).
22.png



About Synced TrustLogin Users

Since the source of information for TrustLogin members created (synced) via steps ① or ② above becomes
Bundle, the following member operations will no longer be available on the TrustLogin side.

 ・Profile changes
 ・Member status changes
 ・Member deletion
23.png

Note: Currently, only users are provisioned; groups are not provisioned.
For group assignment on the TrustLogin side, please refer to
the "Register a Group" section, under the "Automatically Add Members to a Group Based on Conditions" item.



Deleting Members

This section provides an example of how to delete a TrustLogin user that is synced with Bundle.

  1. From the TrustLogin admin page, on the "Settings > Optional Features > SCIM IDP Integration" screen,
    turn ON the "Delete SCIM user after unlinking" toggle.
    24.png
    If OFF: Even if you perform the operation to delete a TrustLogin user on the Bundle side,
          the TrustLogin user's status will only change to suspended, and the user will not be deleted
    If ON: Performing the operation to delete a TrustLogin user on the Bundle side
          will delete the TrustLogin user.


  2. From the Bundle admin screen, go to "My Apps" and select "GMO TrustLogin".
    25.png

  3. Click "Delete GMO TrustLogin Account" from the menu displayed to the right of the member you want to delete.
    26.png
    A confirmation dialog is displayed; select "OK".
    The deletion process starts, and the user is deleted on the TrustLogin side.
    27.png

SaaS Account Integration by Bundle (SCIM IdP Integration with Bundle) Setup Guide

Integrate Bundle with TrustLogin to Reduce the Effort of ID Management

Note: This feature is intended for customers with a contract for freee Co., Ltd.'s Bundle service.

"SCIM IDP Integration" is a feature that uses the SCIM protocol to
synchronize ID information from Bundle to TrustLogin.

This guide explains how to configure integration with Bundle using SCIM IDP Integration.

Note: A TrustLogin Pro plan or optional contract is required to use this feature. For pricing, see here

1. TrustLogin-side Configuration

Integration Steps

  1. Log in to TrustLogin, then from the "Admin Page > Settings > Optional Features" menu,
    open "Settings" to the right of "SCIM IDP Integration".
    01.png

  2. Open "SCIM Source Configuration to Add".
    02.png

  3. Set any name you like and click "Save".
    03.png

  4. Open the source configuration you created.
    04.png

  5. "SCIM Endpoint" and the value obtained from "Generate Credentials"—make a note of them.
    (Used in the Bundle-side configuration)
    05.png
    Note: If you generate credentials, the existing credentials will no longer be usable.
      If this is not a problem, proceed by clicking "Yes" in the screen below.
    06.png
    Please make a note of the displayed value.
    07.png

2. Bundle-side Configuration

These are the steps to integrate the user information registered in Bundle with the TrustLogin user information.
This is explained in the following two stages.

2-1. Credential Configuration and User Information Review (Temporary Sync)
2-2. User Provisioning Operations (Continuous Sync)

Note: For detailed configuration and operation instructions on the Bundle side,
 please check with the provider of Bundle (freee Co., Ltd.).

2-1. Credential Configuration and User Information Review (Temporary Sync)

  1. From the Bundle admin screen, go to "App Catalog" and select the "GMO TrustLogin" app.
    08.png


  2. Proceed to "Add Integration".
    09.png

     
  3. TrustLogin Configuration > enter the values obtained in Setup Step 5.
    Enter the value of TrustLogin's "SCIM Endpoint" into the "SCIM Endpoint" field,
    and the value obtained from "Generate Credentials" into the "Token" field, then click "Add".
    10.png
     
  4. The TrustLogin user information is retrieved and displayed.
    Note: Users are matched based on their email address.
    Note: User information registered only in TrustLogin is displayed as a "shadow account" on the Bundle side.
    11.png


2-2. User Provisioning (Continuous Sync)

By performing this operation, the TrustLogin user comes under the control of Bundle.

① Create a New TrustLogin User / Sync with an Existing TrustLogin User

  1. On the Bundle admin screen, select the member you want to sync from "Members" to open the member details screen.
    20.png
     

  2. Select "Apps in Use" from the left-side menu,
    then click "Add account to GMO TrustLogin" from the "Perform Action" button.
    The sync process starts, and a user is created in TrustLogin (or synced, if one already exists).
    21.png

② Bulk Sync (by Group)

By using the "Access Profile" feature on the Bundle side, you can perform provisioning operations on a per-group basis.

Create an access profile for "GMO TrustLogin" and add the created access profile to a group.
This will perform the "Add account to GMO TrustLogin" operation for members who match the group's rules
(or members who were manually added to the group).
22.png



About Synced TrustLogin Users

Since the source of information for TrustLogin members created (synced) via steps ① or ② above becomes
Bundle, the following member operations will no longer be available on the TrustLogin side.

 ・Profile changes
 ・Member status changes
 ・Member deletion
23.png

Note: Currently, only users are provisioned; groups are not provisioned.
For group assignment on the TrustLogin side, please refer to
the "Register a Group" section, under the "Automatically Add Members to a Group Based on Conditions" item.



Deleting Members

This section provides an example of how to delete a TrustLogin user that is synced with Bundle.

  1. From the TrustLogin admin page, on the "Settings > Optional Features > SCIM IDP Integration" screen,
    turn ON the "Delete SCIM user after unlinking" toggle.
    24.png
    If OFF: Even if you perform the operation to delete a TrustLogin user on the Bundle side,
          the TrustLogin user's status will only change to suspended, and the user will not be deleted
    If ON: Performing the operation to delete a TrustLogin user on the Bundle side
          will delete the TrustLogin user.


  2. From the Bundle admin screen, go to "My Apps" and select "GMO TrustLogin".
    25.png

  3. Click "Delete GMO TrustLogin Account" from the menu displayed to the right of the member you want to delete.
    26.png
    A confirmation dialog is displayed; select "OK".
    The deletion process starts, and the user is deleted on the TrustLogin side.
    27.png