My Redmine SAML JIT Setup Guide

Item

Details

Pre-check

  • Prior configuration in My Redmine is required.

  • My Redmine's SAML JIT only supports creating new users. Since updating user information in TrustLogin does not update it in My Redmine, please make user information changes manually in My Redmine.

  • For the latest setup instructions, please check the manual provided by My Redmine.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, click here

SP Configuration

Configured by the administrator

Request SP to configure

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JITProvisioning supported (new user creation only; user deletion not supported)
Note: For setup instructions when provisioning is not required, click here

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. On the "Register Company App" screen, search for and select "My Redmine (SAML)".
    02.png

  3. Make a note of the "IdP URL" and "Issuer/Entity ID" values under "Identity Provider Information", then download the certificate from the "Get Certificate" button.
    03.png

  4. In "Service Provider Settings", enter your My Redmine account name in the blank fields for "Entity ID" and "ACS URL to Service".
    If your login URL is https://xxxxx.cloud.redmine.jp/, enter xxxxx.
    04.png

  5. Save by clicking the "Register" button.

  6. Change the extension of the downloaded certificate to [.cer] and open the file.
    05.png
    06.png

    Make a note of the "Thumbprint" value in the "Details" tab.
    07.png

My Redmine Settings

  1. Log in with a system administrator account and open "Administration > SAML Authentication".
    08.png

  2. Configure each item as follows, and save by clicking the "Apply" button.
    Enable SAML Authentication ON
    Display Login Button This is the display name shown on the SAML login button on the login page.
    You can change it to any name you like.
    10.png
    Hide Redmine's Login Form Turning this ON hides the login ID and password fields on the login screen. Please note that this will disable login using the Redmine login ID/password.
    Automatically Create User on SAML Authentication ON
    idp entity id

    The "Issuer/Entity ID" obtained from TrustLogin

    idp sso target url The "IdP URL" obtained from TrustLogin
    idp cert fingerprint

    The "Thumbprint" value obtained from the TrustLogin certificate

    fingerprint algorithm Select "sha1"
    Login ID uid
    Email address Email
    FirstName
    Last Name LastName

    09jit.png

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "My Redmine (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

②When an administrator adds members

  1. Search for and click the "My Redmine (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

My Redmine SAML JIT Setup Guide

Item

Details

Pre-check

  • Prior configuration in My Redmine is required.

  • My Redmine's SAML JIT only supports creating new users. Since updating user information in TrustLogin does not update it in My Redmine, please make user information changes manually in My Redmine.

  • For the latest setup instructions, please check the manual provided by My Redmine.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, click here

SP Configuration

Configured by the administrator

Request SP to configure

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JITProvisioning supported (new user creation only; user deletion not supported)
Note: For setup instructions when provisioning is not required, click here

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. On the "Register Company App" screen, search for and select "My Redmine (SAML)".
    02.png

  3. Make a note of the "IdP URL" and "Issuer/Entity ID" values under "Identity Provider Information", then download the certificate from the "Get Certificate" button.
    03.png

  4. In "Service Provider Settings", enter your My Redmine account name in the blank fields for "Entity ID" and "ACS URL to Service".
    If your login URL is https://xxxxx.cloud.redmine.jp/, enter xxxxx.
    04.png

  5. Save by clicking the "Register" button.

  6. Change the extension of the downloaded certificate to [.cer] and open the file.
    05.png
    06.png

    Make a note of the "Thumbprint" value in the "Details" tab.
    07.png

My Redmine Settings

  1. Log in with a system administrator account and open "Administration > SAML Authentication".
    08.png

  2. Configure each item as follows, and save by clicking the "Apply" button.
    Enable SAML Authentication ON
    Display Login Button This is the display name shown on the SAML login button on the login page.
    You can change it to any name you like.
    10.png
    Hide Redmine's Login Form Turning this ON hides the login ID and password fields on the login screen. Please note that this will disable login using the Redmine login ID/password.
    Automatically Create User on SAML Authentication ON
    idp entity id

    The "Issuer/Entity ID" obtained from TrustLogin

    idp sso target url The "IdP URL" obtained from TrustLogin
    idp cert fingerprint

    The "Thumbprint" value obtained from the TrustLogin certificate

    fingerprint algorithm Select "sha1"
    Login ID uid
    Email address Email
    FirstName
    Last Name LastName

    09jit.png

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "My Redmine (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

②When an administrator adds members

  1. Search for and click the "My Redmine (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.