How to Configure SAML Authentication for HUE Workflow

Item

Details

Prerequisites

  • Prior configuration on the HUE Workflow side is required.

  • For the latest configuration steps, please refer to the manual provided by HUE Workflow.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-side Settings

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verification Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Preparations

Add a Custom Attribute to User Information

Add the HUE Workflow "User ID" information as a custom attribute to the member information in TrustLogin.
Note: This is not necessary if the "HUE Workflow User ID" matches the "email address registered in TrustLogin". Please proceed to the next step.


[HUE Workflow Account Information Screen]
00_1.png

[TrustLogin Custom Attribute Configuration Example]
00_2.png

Please refer to the following pages for instructions on configuring custom attributes. The attribute name for the custom attribute can be anything you like.

Custom Attribute Configuration (Individual Registration)

Custom Attribute Configuration (Bulk Registration)

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "HUE Workflow (SAML)".
    02.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png

At this point, switch to configuring the HUE Workflow side.
Do not click the "Register" button yet — open HUE Workflow in a separate window.

HUE Workflow Configuration

  1. Open "Workspace Management" in HUE Workflow, and turn on "Use SAML Authentication" under "Security Settings > Authentication Settings > SAML".
    04.png

  2. Configure each item as follows, then click the "Apply" button to save the settings.
    SSO Login Button (Optional) You can change the label of the SSO login button on the HUE Workflow login screen
    IdP Metadata File Upload the "metadata" obtained from TrustLogin
    Single Logout Turn the checkbox OFF
    SP Metadata File Download it using the "Download" button

    05.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Name ID Value ・If the HUE Workflow User ID matches the TrustLogin email address
     → Set "Member > email"

    ・If the HUE Workflow User ID differs from the TrustLogin email address
     → Set "Custom Attribute > the custom attribute name you configured"
    Metadata Upload the "SP metadata file" obtained from HUE Workflow

    06.png

  2. Click the "Register" button to save.

TrustLogin User Configuration

① When Users Add the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "HUE Workflow (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When Administrators Add Members

  1. In the "Admin Page > Apps" menu, search for and click the "HUE Workflow (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for HUE Workflow

Item

Details

Prerequisites

  • Prior configuration on the HUE Workflow side is required.

  • For the latest configuration steps, please refer to the manual provided by HUE Workflow.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-side Settings

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verification Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Preparations

Add a Custom Attribute to User Information

Add the HUE Workflow "User ID" information as a custom attribute to the member information in TrustLogin.
Note: This is not necessary if the "HUE Workflow User ID" matches the "email address registered in TrustLogin". Please proceed to the next step.


[HUE Workflow Account Information Screen]
00_1.png

[TrustLogin Custom Attribute Configuration Example]
00_2.png

Please refer to the following pages for instructions on configuring custom attributes. The attribute name for the custom attribute can be anything you like.

Custom Attribute Configuration (Individual Registration)

Custom Attribute Configuration (Bulk Registration)

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "HUE Workflow (SAML)".
    02.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png

At this point, switch to configuring the HUE Workflow side.
Do not click the "Register" button yet — open HUE Workflow in a separate window.

HUE Workflow Configuration

  1. Open "Workspace Management" in HUE Workflow, and turn on "Use SAML Authentication" under "Security Settings > Authentication Settings > SAML".
    04.png

  2. Configure each item as follows, then click the "Apply" button to save the settings.
    SSO Login Button (Optional) You can change the label of the SSO login button on the HUE Workflow login screen
    IdP Metadata File Upload the "metadata" obtained from TrustLogin
    Single Logout Turn the checkbox OFF
    SP Metadata File Download it using the "Download" button

    05.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Name ID Value ・If the HUE Workflow User ID matches the TrustLogin email address
     → Set "Member > email"

    ・If the HUE Workflow User ID differs from the TrustLogin email address
     → Set "Custom Attribute > the custom attribute name you configured"
    Metadata Upload the "SP metadata file" obtained from HUE Workflow

    06.png

  2. Click the "Register" button to save.

TrustLogin User Configuration

① When Users Add the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "HUE Workflow (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When Administrators Add Members

  1. In the "Admin Page > Apps" menu, search for and click the "HUE Workflow (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.