|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure custom attributes, see here |
||
|
SP-Side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
Supports provisioning via API (accounts can be managed from TrustLogin) |
|
|
Supports SAML JIT provisioning (accounts can be managed from TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each individual system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified Device Compatibility |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
〇 |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
〇 |
Android - Native App |
|
TrustLogin Admin Page Configuration
-
Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- On the "Register Corporate App" screen, search for and select "Pipedrive (SAML)".
- Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
At this point, switch to configuring the Pipedrive side.
Do not click the "Register" button yet — open Pipedrive in a separate window.
Pipedrive Configuration
- From the menu under the icon in the upper right, select "Company settings".
- Open "Single Sign-On".
- Configure each item under "SAML configuration for Pipedrive" as follows.
Issuer The "Issuer/Entity ID" obtained from TrustLogin Single sign-on (SSO) URL The "IdP URL" obtained from TrustLogin X.509 certificate The contents of the "certificate" obtained from TrustLogin
- Under "SAML configuration for your IDP", copy the "Single sign-on (SSO) URL" using the "Copy to clipboard" button.
Return to the TrustLogin configuration page.
Leave the Pipedrive page open as is.
TrustLogin Admin Page Configuration (Continued)
-
Resume the TrustLogin configuration.
Under "Service Provider Settings > ACS URL for Service", paste the "Single sign-on (SSO) URL" you copied from Pipedrive.
- Click the "Register" button to save.
- To perform a connection test in Pipedrive, add the administrator who will run the test as a member of the SAML app you created.
For instructions on how to add a member, see TrustLogin User Settings below.
Return to Pipedrive again.
Pipedrive Configuration (Continued)
- Click the "Save & Test" button to perform a connection test.
- When the message indicating the SSO login test was successful appears, click "Enable SSO/SAML for users?".
- SSO has been enabled for all users.
At this point, users can log in using either their ID/password or SAML SSO.
Note: Turning on "Enforce SSO login" will restrict login to SAML SSO only.
TrustLogin User Settings
① When a User Adds the App from My Page
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "Pipedrive (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter a new one, then click the "Register" button.
② When an Administrator Adds a Member
- In the "Admin Page > Apps" menu, search for and click the "Pipedrive (SAML)" app.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.