Sketch SAML JIT Setup Guide

Item

Details

Pre-check

  • Prior configuration in Sketch is required.

  • Please refer to the manual provided by Sketch for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the administrator

Request SP to configure

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Sketch (SAML)".
    02.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png

Now, switch to configuring Sketch.
Do not click the "Register" button yet — open Sketch in a separate window.

Sketch Settings

  1. Open "People & Settings > Single Sign-On" and click "Choose a Shortname".
    04.png

  2. Set any "SSO Shortname" you like and click "Submit".
    05.png

  3. On the "Set Up Identity Provider" screen, copy the "EntityID" and "ACS URL" values using the "Copy" button on the right, and make a note of each.
    06.png

  4. Switch to "Set Up Sketch" and upload the metadata obtained from TrustLogin via "Edit ... > Upload XML file...".
    07.png

Now return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "EntityID" obtained from Sketch
    ACS URL to Service The "ACS URL" obtained from Sketch

    08.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Sketch (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

②When an administrator adds members

  1. Search for and click the "Sketch (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

Login Method

① Logging in via "Sketch (SAML)"

Running "Sketch (SAML)" from My Page or the browser extension will take you to Sketch's SSO login screen. After entering the "SSO Shortname", click the "Continue" button to complete login.
09.png

②Using the helper app

We also provide a helper app called "[SAML Helper] Sketch" that lets you skip entering the "SSO Shortname" during the login process described in ①.
Add the app following the same steps as a standard app registration, either as an administrator or by the user themselves.
Note: The helper app can only be used with PC browsers and Android - Standard Browser (Chrome).
10.png

Sketch SAML JIT Setup Guide

Item

Details

Pre-check

  • Prior configuration in Sketch is required.

  • Please refer to the manual provided by Sketch for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the administrator

Request SP to configure

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Sketch (SAML)".
    02.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png

Now, switch to configuring Sketch.
Do not click the "Register" button yet — open Sketch in a separate window.

Sketch Settings

  1. Open "People & Settings > Single Sign-On" and click "Choose a Shortname".
    04.png

  2. Set any "SSO Shortname" you like and click "Submit".
    05.png

  3. On the "Set Up Identity Provider" screen, copy the "EntityID" and "ACS URL" values using the "Copy" button on the right, and make a note of each.
    06.png

  4. Switch to "Set Up Sketch" and upload the metadata obtained from TrustLogin via "Edit ... > Upload XML file...".
    07.png

Now return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "EntityID" obtained from Sketch
    ACS URL to Service The "ACS URL" obtained from Sketch

    08.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Sketch (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

②When an administrator adds members

  1. Search for and click the "Sketch (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

Login Method

① Logging in via "Sketch (SAML)"

Running "Sketch (SAML)" from My Page or the browser extension will take you to Sketch's SSO login screen. After entering the "SSO Shortname", click the "Continue" button to complete login.
09.png

②Using the helper app

We also provide a helper app called "[SAML Helper] Sketch" that lets you skip entering the "SSO Shortname" during the login process described in ①.
Add the app following the same steps as a standard app registration, either as an administrator or by the user themselves.
Note: The helper app can only be used with PC browsers and Android - Standard Browser (Chrome).
10.png