How to Configure SAML Authentication for OneDesk

Item

Details

Pre-check

  • Prior configuration on OneDesk is required.

  • You need to have already created an account on OneDesk using the same email address as TrustLogin.

  • Please refer to the manual provided by OneDesk for the latest setup instructions.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-Side Settings

Configured by the administrator

Request the SP to configure the settings

Provisioning

Supports provisioning via API (accounts can be managed from TrustLogin)

Supports SAML JIT provisioning(accounts can be managed from TrustLogin; users cannot be deleted)

None (accounts are created in each system)
Note: For how to configure this if you use provisioning, see here

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Verification Status

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - In-App Browser of the TrustLogin Mobile App

iOS - Native App

Android - Standard Browser (Chrome)

Android - In-App Browser of the TrustLogin Mobile App

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Company App" screen, search and select "OneDesk (SAML)".
    Onedesk05.png


  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".03.png

Now, switch to the OneDesk settings.

Without clicking the "Register" button, open OneDesk in a separate window.

OneDesk Settings

  1. Log in to OneDesk as an administrator, click the profile icon in the upper right of the screen, and select "Administration>Integrations".
    Onedesk02.png

  2. Open the "Single Sign On" tab and configure it as follows.
    Entable SSO for users Turn the toggle on
    SAML Turn SAML ON and click Expand
    OneDesk Metadata URL

    Copy the unique value at the end of the URL and keep it for later use

    [Example] https://app.onedesk.com/sso/saml/metadata/alias/onedesk.com_xxxx

    OneDesk SSO Login URL

    The URL for SP-Initiated SSO. Keep it for later use if needed

    Upload Metadata File

    Using Choose File, upload the metadata you noted down from TrustLogin

    Entable User Provisioning Turn the checkbox off

    Onedesk03.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The unique value at the end of the OneDesk Metadata URL noted from OneDesk
    Service ACS URL The unique value at the end of the OneDesk Metadata URL noted from OneDesk

    Onedesk.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App from My Page

  1. On "My Page", click the "Add App" button.
  2. On the "Register App" screen, select "OneDesk (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds Members

  1. In the "Admin Page > Apps" menu, search for and click the "OneDesk (SAML)" app.
  2. Click "Add Member", select the users to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for OneDesk

Item

Details

Pre-check

  • Prior configuration on OneDesk is required.

  • You need to have already created an account on OneDesk using the same email address as TrustLogin.

  • Please refer to the manual provided by OneDesk for the latest setup instructions.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-Side Settings

Configured by the administrator

Request the SP to configure the settings

Provisioning

Supports provisioning via API (accounts can be managed from TrustLogin)

Supports SAML JIT provisioning(accounts can be managed from TrustLogin; users cannot be deleted)

None (accounts are created in each system)
Note: For how to configure this if you use provisioning, see here

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Verification Status

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - In-App Browser of the TrustLogin Mobile App

iOS - Native App

Android - Standard Browser (Chrome)

Android - In-App Browser of the TrustLogin Mobile App

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Company App" screen, search and select "OneDesk (SAML)".
    Onedesk05.png


  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".03.png

Now, switch to the OneDesk settings.

Without clicking the "Register" button, open OneDesk in a separate window.

OneDesk Settings

  1. Log in to OneDesk as an administrator, click the profile icon in the upper right of the screen, and select "Administration>Integrations".
    Onedesk02.png

  2. Open the "Single Sign On" tab and configure it as follows.
    Entable SSO for users Turn the toggle on
    SAML Turn SAML ON and click Expand
    OneDesk Metadata URL

    Copy the unique value at the end of the URL and keep it for later use

    [Example] https://app.onedesk.com/sso/saml/metadata/alias/onedesk.com_xxxx

    OneDesk SSO Login URL

    The URL for SP-Initiated SSO. Keep it for later use if needed

    Upload Metadata File

    Using Choose File, upload the metadata you noted down from TrustLogin

    Entable User Provisioning Turn the checkbox off

    Onedesk03.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The unique value at the end of the OneDesk Metadata URL noted from OneDesk
    Service ACS URL The unique value at the end of the OneDesk Metadata URL noted from OneDesk

    Onedesk.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App from My Page

  1. On "My Page", click the "Add App" button.
  2. On the "Register App" screen, select "OneDesk (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds Members

  1. In the "Admin Page > Apps" menu, search for and click the "OneDesk (SAML)" app.
  2. Click "Add Member", select the users to add from the member list, and click the "Register" button to add them.