Yoom SAML JIT Setup Guide

Item

Details

Prior Confirmation

  • Prior configuration in Yoom is required.

  • When a new user is created via SAML JIT, the name is set to the email address. If you want to change the name, the user must change it manually.
  • For the latest setup instructions, please check the manual provided by Yoom.

Name ID

Email address

Custom attribute Note: For instructions on how to configure a custom attribute, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Provisioning via API supported (account management possible in TrustLogin)

SAML JIT provisioning supported (account management possible in TrustLogin; user deletion not supported)
Note: For setup instructions when provisioning is not required, see here

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Yoom (SAML)".
    yoom01.png


  3. Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate from the "Get Certificate" button.03.png

  4. Convert the file extension of the downloaded certificate to ".cer".

  5. In the "Service Provider Settings" section, enter Yoom's "Workspace ID" into the blank fields for "Entity ID" and "ACS URL to Service".
    yoom02.png

  6. Click the "Register" button to save.

Yoom Settings

  1. Log in to Yoom, click the icon in the upper right, and select "Settings".
    yoom05.png

  2. Select "Team Settings > Other Settings", configure the "SAML Authentication Settings" as follows, and click "Change SAML Settings".
    Identity Provider Identifier The "Issuer/Entity ID" noted down from TrustLogin
    Identity Provider's SSO Endpoint URL The "IdP URL" noted down from TrustLogin

    Public Key Certificate Used by
    Identity Provider for Signing

    The "Certificate" noted down from TrustLogin, converted to .cer
    Enable Just-in-Time Provisioning On
    Restrict login to use SAML authentication only Turning this on will require SAML login and disable password login. We recommend turning it on only after confirming that SAML authentication succeeds.
    Enable SAML Settings On

    yoom06.png

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Yoom (SAML)", and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

②When an administrator adds members

  1. Search for and click the "Yoom (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

Yoom SAML JIT Setup Guide

Item

Details

Prior Confirmation

  • Prior configuration in Yoom is required.

  • When a new user is created via SAML JIT, the name is set to the email address. If you want to change the name, the user must change it manually.
  • For the latest setup instructions, please check the manual provided by Yoom.

Name ID

Email address

Custom attribute Note: For instructions on how to configure a custom attribute, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Provisioning via API supported (account management possible in TrustLogin)

SAML JIT provisioning supported (account management possible in TrustLogin; user deletion not supported)
Note: For setup instructions when provisioning is not required, see here

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Yoom (SAML)".
    yoom01.png


  3. Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate from the "Get Certificate" button.03.png

  4. Convert the file extension of the downloaded certificate to ".cer".

  5. In the "Service Provider Settings" section, enter Yoom's "Workspace ID" into the blank fields for "Entity ID" and "ACS URL to Service".
    yoom02.png

  6. Click the "Register" button to save.

Yoom Settings

  1. Log in to Yoom, click the icon in the upper right, and select "Settings".
    yoom05.png

  2. Select "Team Settings > Other Settings", configure the "SAML Authentication Settings" as follows, and click "Change SAML Settings".
    Identity Provider Identifier The "Issuer/Entity ID" noted down from TrustLogin
    Identity Provider's SSO Endpoint URL The "IdP URL" noted down from TrustLogin

    Public Key Certificate Used by
    Identity Provider for Signing

    The "Certificate" noted down from TrustLogin, converted to .cer
    Enable Just-in-Time Provisioning On
    Restrict login to use SAML authentication only Turning this on will require SAML login and disable password login. We recommend turning it on only after confirming that SAML authentication succeeds.
    Enable SAML Settings On

    yoom06.png

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Yoom (SAML)", and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

②When an administrator adds members

  1. Search for and click the "Yoom (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.