monday.com SAML JIT Setup Guide

Item

Details

Prior Confirmation

  • Prior configuration in monday.com is required.

  • The user's "Last Name" and "First Name" are synced only when a new user is created via SAML JIT. They are not automatically updated on subsequent logins.

  • For the latest setup instructions, please check the manual provided by monday.com.

Name ID

Email address

Custom attribute Note: For instructions on how to configure a custom attribute, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management possible in TrustLogin)

SAML JIT Provisioning supported (account management possible in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App



TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "monday.com (SAML)".
    02.png

  3. Note down the values of "Identity Provider URL" and "Issuer / Entity ID" under "Identity Provider Information", and download the certificate from the "Get Certificate" button.
    03.png

  4. Enter your "monday.com subdomain" in the two blank fields under "Service Provider Settings".
    (If your monday.com URL is "https://xxxxxx.monday.com/", enter "xxxxxx")
    04.png

  5. Save by clicking the "Register" button.

  6. Add the administrator performing the test as a member of the SAML app you created.
    For instructions on how to add members, see TrustLogin User Settings below.

monday.com Settings

  1. Open "Admin > Security" from the icon at the bottom left, and click the "Open" button for "Single Sign-On (SSO)".
    05.png

  2. Configure each item under "1. SSO Provider" as follows.
    SSO Provider Select "Custom SAML 2.0"
    SAML SSO URL The "Identity Provider URL" obtained from TrustLogin
    Identity provider issuer The "Issuer / Entity ID" obtained from TrustLogin

    Public Certificate

    The contents of the "Certificate" obtained from TrustLogin

    06.png

  3. Click the "Test SSO Connection" button under "2. Test SSO Connection".
    07.png

  4. Once the connection success message is displayed, configure "3. Choose Restrictions and Password Policy" according to your operational needs.
    We recommend setting the "Login Restriction Policy" to "SSO authentication is optional" until all verification of SAML SSO authentication is complete and users have been notified.
    08.png

  5. Click "Activate" under "4. Activate SSO Provider" to enable SAML SSO.
    09.png

TrustLogin User Settings

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "monday.com (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

②When an Administrator Adds Members

  1. Search for and click the "monday.com (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

SSO Authentication Method for the Native App

monday.com supports a native app. If you want to use the native app, you can do so using the method below.

  1. Download and open the monday.com native app.
  2. Enter your email address and click "Next".
    monday.com.png

    Note: On iOS only, you will be taken to an email confirmation screen. Click "Log in with password".
    monday.com4.png

  3. Enter your "monday.com subdomain" as the account URL.
    (If your monday.com URL is "https://xxxxxx.monday.com/", enter "xxxxxx")
    monday.com2.png

  4. Click "Log in with SAML".
    monday.com3.png
  5. You will be taken to the TrustLogin login screen. Log in to TrustLogin and use the app. (Note: If TrustLogin is already open, you will not be taken to the login screen.)

monday.com SAML JIT Setup Guide

Item

Details

Prior Confirmation

  • Prior configuration in monday.com is required.

  • The user's "Last Name" and "First Name" are synced only when a new user is created via SAML JIT. They are not automatically updated on subsequent logins.

  • For the latest setup instructions, please check the manual provided by monday.com.

Name ID

Email address

Custom attribute Note: For instructions on how to configure a custom attribute, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management possible in TrustLogin)

SAML JIT Provisioning supported (account management possible in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App



TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "monday.com (SAML)".
    02.png

  3. Note down the values of "Identity Provider URL" and "Issuer / Entity ID" under "Identity Provider Information", and download the certificate from the "Get Certificate" button.
    03.png

  4. Enter your "monday.com subdomain" in the two blank fields under "Service Provider Settings".
    (If your monday.com URL is "https://xxxxxx.monday.com/", enter "xxxxxx")
    04.png

  5. Save by clicking the "Register" button.

  6. Add the administrator performing the test as a member of the SAML app you created.
    For instructions on how to add members, see TrustLogin User Settings below.

monday.com Settings

  1. Open "Admin > Security" from the icon at the bottom left, and click the "Open" button for "Single Sign-On (SSO)".
    05.png

  2. Configure each item under "1. SSO Provider" as follows.
    SSO Provider Select "Custom SAML 2.0"
    SAML SSO URL The "Identity Provider URL" obtained from TrustLogin
    Identity provider issuer The "Issuer / Entity ID" obtained from TrustLogin

    Public Certificate

    The contents of the "Certificate" obtained from TrustLogin

    06.png

  3. Click the "Test SSO Connection" button under "2. Test SSO Connection".
    07.png

  4. Once the connection success message is displayed, configure "3. Choose Restrictions and Password Policy" according to your operational needs.
    We recommend setting the "Login Restriction Policy" to "SSO authentication is optional" until all verification of SAML SSO authentication is complete and users have been notified.
    08.png

  5. Click "Activate" under "4. Activate SSO Provider" to enable SAML SSO.
    09.png

TrustLogin User Settings

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "monday.com (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

②When an Administrator Adds Members

  1. Search for and click the "monday.com (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

SSO Authentication Method for the Native App

monday.com supports a native app. If you want to use the native app, you can do so using the method below.

  1. Download and open the monday.com native app.
  2. Enter your email address and click "Next".
    monday.com.png

    Note: On iOS only, you will be taken to an email confirmation screen. Click "Log in with password".
    monday.com4.png

  3. Enter your "monday.com subdomain" as the account URL.
    (If your monday.com URL is "https://xxxxxx.monday.com/", enter "xxxxxx")
    monday.com2.png

  4. Click "Log in with SAML".
    monday.com3.png
  5. You will be taken to the TrustLogin login screen. Log in to TrustLogin and use the app. (Note: If TrustLogin is already open, you will not be taken to the login screen.)