How to Configure SAML Authentication for Meister Suite

 Item

Details

Prerequisites

  • This is a common configuration for MindMeister, MeisterTask, and MeisterNote.
  • Prior configuration in Meister Suite is required.

  • You must create an account in Meister Suite using the same email address as TrustLogin.

  • For the latest configuration steps, please refer to the manual provided by Meister Suite.

Name ID

Email address

 

Custom attribute Note: For instructions on configuring custom attributes, see here

SP-side Configuration

Configured by the administrator

 

Request configuration from the SP

Provisioning

 

Supports provisioning via API (account management possible in TrustLogin)

 

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

 

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Corporate App" screen, search for and select "Meister Suite (SAML)."
    Meister

  3. Download the metadata using the "Download Metadata" button under "Identity Provider Information."
    03.png

 

At this point, move on to the configuration on the Meister Suite side.
Do not click the "Register" button yet; open Meister Suite in a separate window.

Meister Suite Configuration

  1. Open the account screen, set any login domain you like in "Login Domain" under "My Team > Settings > General," and save by clicking the "Save Changes" button.
    04.png

  2. Open the "Sign Up" tab, check "Enable SSO with a third-party identity provider," and upload the metadata obtained from TrustLogin using the "Upload Identity Provider Metadata" button.
    Save by clicking the "Save Changes" button.
    05.png

  3. Note the "Login URL," and download the "Service Provider Metadata."
    If you want to enable "Allow SAML login only for all team members," we recommend enabling it only after all SSO configuration and communication to users are complete.
    06.png

Now, return to the TrustLogin Admin Page.

TrustLogin Admin Page Configuration (Continued)

  1. Configure "Service Provider Settings" as follows.
    Login URL The login URL obtained from Meister Suite
    If you use multiple services, specify the login URL of the service you use as your main service, then switch between services within the page after logging in.
    Metadata Upload the metadata obtained from Meister Suite

    07.png

  2. Save by clicking the "Register" button.

 

TrustLogin User Configuration

(1) When a User Adds the App from My Page

  1. On "My Page," click the "Add App" button.
  2. On the "Register App" screen, select "Meister Suite (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

(2) When an Administrator Adds Members

  1. In the "Admin Page > Apps" menu, search for and click the "Meister Suite (SAML)" app.
  2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Meister Suite

 Item

Details

Prerequisites

  • This is a common configuration for MindMeister, MeisterTask, and MeisterNote.
  • Prior configuration in Meister Suite is required.

  • You must create an account in Meister Suite using the same email address as TrustLogin.

  • For the latest configuration steps, please refer to the manual provided by Meister Suite.

Name ID

Email address

 

Custom attribute Note: For instructions on configuring custom attributes, see here

SP-side Configuration

Configured by the administrator

 

Request configuration from the SP

Provisioning

 

Supports provisioning via API (account management possible in TrustLogin)

 

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

 

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Corporate App" screen, search for and select "Meister Suite (SAML)."
    Meister

  3. Download the metadata using the "Download Metadata" button under "Identity Provider Information."
    03.png

 

At this point, move on to the configuration on the Meister Suite side.
Do not click the "Register" button yet; open Meister Suite in a separate window.

Meister Suite Configuration

  1. Open the account screen, set any login domain you like in "Login Domain" under "My Team > Settings > General," and save by clicking the "Save Changes" button.
    04.png

  2. Open the "Sign Up" tab, check "Enable SSO with a third-party identity provider," and upload the metadata obtained from TrustLogin using the "Upload Identity Provider Metadata" button.
    Save by clicking the "Save Changes" button.
    05.png

  3. Note the "Login URL," and download the "Service Provider Metadata."
    If you want to enable "Allow SAML login only for all team members," we recommend enabling it only after all SSO configuration and communication to users are complete.
    06.png

Now, return to the TrustLogin Admin Page.

TrustLogin Admin Page Configuration (Continued)

  1. Configure "Service Provider Settings" as follows.
    Login URL The login URL obtained from Meister Suite
    If you use multiple services, specify the login URL of the service you use as your main service, then switch between services within the page after logging in.
    Metadata Upload the metadata obtained from Meister Suite

    07.png

  2. Save by clicking the "Register" button.

 

TrustLogin User Configuration

(1) When a User Adds the App from My Page

  1. On "My Page," click the "Add App" button.
  2. On the "Register App" screen, select "Meister Suite (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

(2) When an Administrator Adds Members

  1. In the "Admin Page > Apps" menu, search for and click the "Meister Suite (SAML)" app.
  2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.