How to Configure SAML Authentication for Wrike

Item

Details

Pre-check

  • Prior configuration in Wrike is required.

  • You must create an account in Wrike using the same email address as your TrustLogin account.

  • For the latest setup instructions, please refer to the manual provided by Wrike.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, see here

SP-side Settings

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created in each system)
Note: For setup instructions when using provisioning, see here

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "Wrike (SAML)".
    Wrike.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png

  4. Click "Register" to save.

Wrike Settings

  1. Log in to Wrike and open Settings from the icon in the upper right.
    04.png

  2. Open "Security" in the left menu and click "SAML SSO Setup".
    16.png

  3. In the Identity Provider settings, select "Other" from the dropdown and proceed with "Next".
    09.png

  4. Download the XML file (metadata) from "Download XML File", then proceed with "Next".
    10.png

  5. Check "Enter XML", open the metadata downloaded from TrustLogin in a text editor, and paste the entire contents. Proceed with "Next".
    11.png

  6. Click "Enable SAML Configuration".
    12.png

  7. Enter the verification code sent to your email address and click "Confirm".
    13.png

Return to the TrustLogin settings once to perform a connection test.
Leave Wrike open as is.

TrustLogin Admin Page Settings (Continued)

  1. Resume the TrustLogin settings.
    (On the Admin Page Apps screen, search by app name → open the relevant app's detail screen → change SAML app settings)

  2. Upload the XML file downloaded from Wrike using the "Select Metadata" button under "Service Provider Settings".
    14.png

  3. Click "Register" to save.

  4. Add the administrator conducting the test as a member of the created SAML app.
    For how to add members, see TrustLogin User Settings below.

Return to Wrike again.

Wrike Settings (Continued)

  1. [Connection Test]
    Follow the displayed steps to test SAML in a new incognito window.
    Once the connection is successful, return to the settings and click "Save SAML Settings".
    15.png

  2. [Add Approved Domain] (Optional)
    If you want to enable domain-based SAML SSO, continue with the domain settings.
    Click "Add Domain" under "Approved Domains".
    05.png

  3. Enter the domain name to add in the format "@domainname" and click the "Add" button.
    06.png

  4. Follow the displayed steps to configure the domain's DNS records. For instructions on configuring DNS records, please refer to your domain registrar's help documentation. DNS record updates may take up to 72 hours. Click "OK".
    07.png
  5. Click "Save Changes", then enter the verification code sent to your email address and click "Confirm".

  6. After configuring the DNS records, once the domain is approved in Wrike, the domain status color changes from red to green. From then on, users of approved domains will log in via SSO.
    08.png

  7. [Configure SAML SSO Login Scope]
    Configure the scope of SSO login according to your operational needs.
    When an approved domain has been added When no approved domain has been added
    Optional Cannot be selected Users can log in with their Wrike ID/password or via SAML SSO (Note)
    Restricted to approved domain users Users of approved domains are required to use SAML SSO
    Users outside approved domains log in with their Wrike ID/password
    Cannot be selected
    For all users All users are required to use SAML SSO All users are required to use SAML SSO
    Note: Wrike's SAML SSO login page is https://login.wrike.com/sso/
    The standard login page https://login.wrike.com/login/
    requires ID/password entry

    17.png

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Wrike (SAML)" and click the "Next" button in the upper right of the screen.
  3. Enter a "Display Name" if you want to change it, and click the "Register" button.

② When an administrator adds a member

  1. Search for and click the "Wrike (SAML)" app in the "Admin Page > Apps" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Wrike

Item

Details

Pre-check

  • Prior configuration in Wrike is required.

  • You must create an account in Wrike using the same email address as your TrustLogin account.

  • For the latest setup instructions, please refer to the manual provided by Wrike.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, see here

SP-side Settings

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created in each system)
Note: For setup instructions when using provisioning, see here

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "Wrike (SAML)".
    Wrike.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png

  4. Click "Register" to save.

Wrike Settings

  1. Log in to Wrike and open Settings from the icon in the upper right.
    04.png

  2. Open "Security" in the left menu and click "SAML SSO Setup".
    16.png

  3. In the Identity Provider settings, select "Other" from the dropdown and proceed with "Next".
    09.png

  4. Download the XML file (metadata) from "Download XML File", then proceed with "Next".
    10.png

  5. Check "Enter XML", open the metadata downloaded from TrustLogin in a text editor, and paste the entire contents. Proceed with "Next".
    11.png

  6. Click "Enable SAML Configuration".
    12.png

  7. Enter the verification code sent to your email address and click "Confirm".
    13.png

Return to the TrustLogin settings once to perform a connection test.
Leave Wrike open as is.

TrustLogin Admin Page Settings (Continued)

  1. Resume the TrustLogin settings.
    (On the Admin Page Apps screen, search by app name → open the relevant app's detail screen → change SAML app settings)

  2. Upload the XML file downloaded from Wrike using the "Select Metadata" button under "Service Provider Settings".
    14.png

  3. Click "Register" to save.

  4. Add the administrator conducting the test as a member of the created SAML app.
    For how to add members, see TrustLogin User Settings below.

Return to Wrike again.

Wrike Settings (Continued)

  1. [Connection Test]
    Follow the displayed steps to test SAML in a new incognito window.
    Once the connection is successful, return to the settings and click "Save SAML Settings".
    15.png

  2. [Add Approved Domain] (Optional)
    If you want to enable domain-based SAML SSO, continue with the domain settings.
    Click "Add Domain" under "Approved Domains".
    05.png

  3. Enter the domain name to add in the format "@domainname" and click the "Add" button.
    06.png

  4. Follow the displayed steps to configure the domain's DNS records. For instructions on configuring DNS records, please refer to your domain registrar's help documentation. DNS record updates may take up to 72 hours. Click "OK".
    07.png
  5. Click "Save Changes", then enter the verification code sent to your email address and click "Confirm".

  6. After configuring the DNS records, once the domain is approved in Wrike, the domain status color changes from red to green. From then on, users of approved domains will log in via SSO.
    08.png

  7. [Configure SAML SSO Login Scope]
    Configure the scope of SSO login according to your operational needs.
    When an approved domain has been added When no approved domain has been added
    Optional Cannot be selected Users can log in with their Wrike ID/password or via SAML SSO (Note)
    Restricted to approved domain users Users of approved domains are required to use SAML SSO
    Users outside approved domains log in with their Wrike ID/password
    Cannot be selected
    For all users All users are required to use SAML SSO All users are required to use SAML SSO
    Note: Wrike's SAML SSO login page is https://login.wrike.com/sso/
    The standard login page https://login.wrike.com/login/
    requires ID/password entry

    17.png

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Wrike (SAML)" and click the "Next" button in the upper right of the screen.
  3. Enter a "Display Name" if you want to change it, and click the "Register" button.

② When an administrator adds a member

  1. Search for and click the "Wrike (SAML)" app in the "Admin Page > Apps" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.