Wrike SAML JIT Setup Guide

Item

Details

Pre-check

  • Prior configuration in Wrike is required.

  • Please refer to the manual provided by Wrike for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the administrator

Request SP to configure

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)
Note: For setup instructions when provisioning is not required, see here

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Wrike (SAML)".
    Wrike.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png
  4. Save by clicking the "Register" button.

Wrike Settings

  1. Log in to Wrike and open the settings from the icon in the upper right.
    04.png

  2. Open "Security" in the left-hand menu and click "Set up SAML SSO".
    16.png

  3. In the identity provider settings, select "Other" from the dropdown and proceed by clicking "Next".
    09.png

  4. Download the XML file (metadata) from "Download the XML file" and proceed by clicking "Next".
    10.png

  5. Check "Enter XML", open the metadata you downloaded from TrustLogin in a text editor, and paste the entire contents. Proceed by clicking "Next".
    11.png

  6. Click "Enable SAML configuration".
    12.png

  7. Enter the verification code sent to your email address and click "Verify".
    13.png

To perform a connection test, return to the TrustLogin settings for now.
Leave Wrike open as is.

TrustLogin Admin Page Settings (Continued)

  1. Resume the TrustLogin settings.
    (On the App screen of the Admin Page, search by app name → open the corresponding app's detail screen → change the SAML app settings)

  2. Upload the XML file downloaded from Wrike using the "Select Metadata" button under "Service Provider Settings".
    14.png
  3. Save by clicking the "Register" button.

  4. Add the administrator who is running the test as a member of the SAML app you created.
    For how to add members, see TrustLogin User Settings below.

Return to Wrike again.

Wrike Settings (Continued)

  1. [Connection Test]
    Follow the displayed instructions to test SAML in a new incognito window.
    Once the connection succeeds, return to the settings and click "Save the SAML configuration".
    15.png

  2. [Enabling SAML JIT]
    Check "Enable Just-In-Time provisioning" and click "Save changes". Enter the verification code sent to your email address and click "Verify".
    19.png

  3. [Adding an Approved Domain] (Optional)
    If you want to turn on domain-based SAML SSO, continue with the domain settings below.
    Click "Add domain" under "Approved domains".
    05.png

  4. Enter the domain name you want to add in the format "@domain name" and click the "Add" button.
    06.png

  5. Follow the displayed instructions to configure the domain's DNS records. For instructions on how to configure your domain's DNS records, refer to your domain registrar's help documentation. DNS record updates can take up to approximately 72 hours to propagate. Click "Got it".
    07.png

  6. Click "Save changes", then enter the verification code sent to your email address and click "Verify".

  7. After the DNS records are configured, once Wrike verifies the domain, the domain's status color will change from red to green. From then on, users of the approved domain will log in via SSO.
    08.png

  8. [Configuring the Scope of SAML SSO Login]
    Configure the scope of SSO login according to your operational needs.
    When an approved domain has been added When no approved domain has been added
    Optional Cannot be selected Users can log in with their Wrike ID/password or via SAML SSO (※)
    Approved domain users only Users in approved domains are forced to use SAML SSO
    Users outside approved domains log in with their Wrike ID/password
    Cannot be selected
    For all users All users are forced to use SAML SSO All users are forced to use SAML SSO
    ※ Wrike's SAML SSO login page is https://login.wrike.com/sso/
    the regular login page https://login.wrike.com/login/
    requires an ID/password to be entered

    17.png

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Wrike (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

② When an administrator adds a member

  1. Search for and click the "Wrike (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

Wrike SAML JIT Setup Guide

Item

Details

Pre-check

  • Prior configuration in Wrike is required.

  • Please refer to the manual provided by Wrike for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the administrator

Request SP to configure

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)
Note: For setup instructions when provisioning is not required, see here

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Wrike (SAML)".
    Wrike.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png
  4. Save by clicking the "Register" button.

Wrike Settings

  1. Log in to Wrike and open the settings from the icon in the upper right.
    04.png

  2. Open "Security" in the left-hand menu and click "Set up SAML SSO".
    16.png

  3. In the identity provider settings, select "Other" from the dropdown and proceed by clicking "Next".
    09.png

  4. Download the XML file (metadata) from "Download the XML file" and proceed by clicking "Next".
    10.png

  5. Check "Enter XML", open the metadata you downloaded from TrustLogin in a text editor, and paste the entire contents. Proceed by clicking "Next".
    11.png

  6. Click "Enable SAML configuration".
    12.png

  7. Enter the verification code sent to your email address and click "Verify".
    13.png

To perform a connection test, return to the TrustLogin settings for now.
Leave Wrike open as is.

TrustLogin Admin Page Settings (Continued)

  1. Resume the TrustLogin settings.
    (On the App screen of the Admin Page, search by app name → open the corresponding app's detail screen → change the SAML app settings)

  2. Upload the XML file downloaded from Wrike using the "Select Metadata" button under "Service Provider Settings".
    14.png
  3. Save by clicking the "Register" button.

  4. Add the administrator who is running the test as a member of the SAML app you created.
    For how to add members, see TrustLogin User Settings below.

Return to Wrike again.

Wrike Settings (Continued)

  1. [Connection Test]
    Follow the displayed instructions to test SAML in a new incognito window.
    Once the connection succeeds, return to the settings and click "Save the SAML configuration".
    15.png

  2. [Enabling SAML JIT]
    Check "Enable Just-In-Time provisioning" and click "Save changes". Enter the verification code sent to your email address and click "Verify".
    19.png

  3. [Adding an Approved Domain] (Optional)
    If you want to turn on domain-based SAML SSO, continue with the domain settings below.
    Click "Add domain" under "Approved domains".
    05.png

  4. Enter the domain name you want to add in the format "@domain name" and click the "Add" button.
    06.png

  5. Follow the displayed instructions to configure the domain's DNS records. For instructions on how to configure your domain's DNS records, refer to your domain registrar's help documentation. DNS record updates can take up to approximately 72 hours to propagate. Click "Got it".
    07.png

  6. Click "Save changes", then enter the verification code sent to your email address and click "Verify".

  7. After the DNS records are configured, once Wrike verifies the domain, the domain's status color will change from red to green. From then on, users of the approved domain will log in via SSO.
    08.png

  8. [Configuring the Scope of SAML SSO Login]
    Configure the scope of SSO login according to your operational needs.
    When an approved domain has been added When no approved domain has been added
    Optional Cannot be selected Users can log in with their Wrike ID/password or via SAML SSO (※)
    Approved domain users only Users in approved domains are forced to use SAML SSO
    Users outside approved domains log in with their Wrike ID/password
    Cannot be selected
    For all users All users are forced to use SAML SSO All users are forced to use SAML SSO
    ※ Wrike's SAML SSO login page is https://login.wrike.com/sso/
    the regular login page https://login.wrike.com/login/
    requires an ID/password to be entered

    17.png

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Wrike (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

② When an administrator adds a member

  1. Search for and click the "Wrike (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.