|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on setting up a custom attribute, see here |
||
|
SP-Side Configuration |
〇 |
Configured by the administrator |
|
Request the SP to configure this |
||
|
Provisioning |
Supports provisioning via API (account management possible in TrustLogin) |
|
|
Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not possible) |
||
|
〇 |
None (accounts are created individually in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Device Compatibility |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App Internal Browser |
|
|
〇 |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App Internal Browser |
|
|
〇 |
Android - Native App |
|
Note: The native app was verified using the Freshdesk and Freshservice apps.
TrustLogin Admin Page Settings
- Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Register Corporate App" screen and select "Freshworks (SAML)."
Note: If you use Freshservice, you can also configure SAML from the app named "Freshservice (SAML)."
- Make a note of the values of "IdP URL" and "Issuer / Entity ID" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.
Now, let's move on to the settings on the Freshworks side.
Do not click the "Register" button yet — open Freshworks in a separate window.
Freshworks Settings
- Log in to Freshworks and click the ">" mark to the right of "Security > Default Login Method."
- Click the "SSO Login" toggle.
- Select "Your IdP > SAML."
- Download the metadata from "Download Metadata."
- Configure each item under "Map Information from IdP" as follows.
Identity Provider Entity ID The "Issuer / Entity ID" obtained from TrustLogin SAML SSO URL The "IdP URL" obtained from TrustLogin Signature Options Signed response only Security Certificate The contents of the "certificate" obtained from TrustLogin
- Save the settings with the "Configure SSO" button.
Now, let's go back to the TrustLogin Admin Page.
TrustLogin Admin Page Settings (continued)
- Configure the "Service Provider Settings" as follows.
Redirect URL After Successful SP Authentication Your Freshworks organization URL
Note: If you use Freshservice, you can specify the page to navigate to for SAML login (IdP-initiated) by specifying the following URL.
Dashboard:
https://[organization domain].freshservice.com/a/dashboard/defaultSupport Portal:
https://[organization domain].freshservice.com/support/home
Metadata Upload the metadata obtained from Freshworks
- Save by clicking the "Register" button.
TrustLogin User Settings
① When a User Adds the App from My Page
- On "My Page," click the "Add App" button.
- On the "Register App" screen, select "Freshworks (SAML)," and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name," enter a new one, then click the "Register" button.
② When an Administrator Adds Members
- In the "Admin Page > App" menu, search for and click the "Freshworks (SAML)" app.
- Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.
How to Log In via SSO Using the Native App
The following describes how to log in via SSO when using the Freshservice native app.
- Launch the app and enter "[organization domain].freshservice.com" in the "Support URL" field.
- Click "Sign in with SSO."
If you are redirected to TrustLogin, log in to TrustLogin.
- Click "Allow" to complete the login.