How to Configure SAML Authentication for McAfee MVISION

Note: SAML authentication is available on web browsers, desktop apps, and mobile apps.
Note: You must complete some settings in McAfee MVISION beforehand.
Note: You need to create an account in McAfee MVISION using the same email address as your TrustLogin (formerly SKUID) account.
Note: For the latest configuration steps, please refer to the manual provided by McAfee.

Configuring the TrustLogin Admin Page

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.

    01.png

  2. Search on the "Register Company App" screen and select "McAfee MVISION (SAML)".

    02.png

  3. Make a note of the "Identity Provider URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate from "Get Certificate". (You will need these later when configuring McAfee.)

    03.png

  4. Change the file extension of the downloaded certificate (text file) from ".txt" to ".crt".

Now, switch to configuring McAfee.
Without clicking the "Register" button, open McAfee MVISION in a separate tab.

Configuring McAfee MVISION

  1. From the settings icon in the upper right of McAfee MVISION, open "User Management > SAML Configuration".

    04.png

  2. Configure each item as shown below, then download the "SAML Metadata".
    Click "Save" to save the settings.

    Issuer The "Issuer/Entity ID" you noted from TrustLogin
    The "certificate" (.crt) you downloaded from TrustLogin
    The "Identity Provider URL" you noted from TrustLogin
    SP-Initiated Request Binding Select "HTTP-POST"
    (Optional) Check the users you want to exclude from SSO (optional)

    05.png

Return to the TrustLogin settings again.

Configuring the TrustLogin Admin Page (Registering the Metadata)

  1. Upload the metadata downloaded from McAfee using "Select Metadata" under "Service Provider Settings".

    06.png

  2. Click the "Register" button to save.

Configuring TrustLogin Users

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "McAfee MVISION (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.
  4. Click the app on "My Page" or in the browser extension, and confirm that login succeeds.

② When an administrator adds a member

  1. On the "Admin Page > Apps" menu, search for and click the "McAfee MVISION (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for McAfee MVISION

Note: SAML authentication is available on web browsers, desktop apps, and mobile apps.
Note: You must complete some settings in McAfee MVISION beforehand.
Note: You need to create an account in McAfee MVISION using the same email address as your TrustLogin (formerly SKUID) account.
Note: For the latest configuration steps, please refer to the manual provided by McAfee.

Configuring the TrustLogin Admin Page

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.

    01.png

  2. Search on the "Register Company App" screen and select "McAfee MVISION (SAML)".

    02.png

  3. Make a note of the "Identity Provider URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate from "Get Certificate". (You will need these later when configuring McAfee.)

    03.png

  4. Change the file extension of the downloaded certificate (text file) from ".txt" to ".crt".

Now, switch to configuring McAfee.
Without clicking the "Register" button, open McAfee MVISION in a separate tab.

Configuring McAfee MVISION

  1. From the settings icon in the upper right of McAfee MVISION, open "User Management > SAML Configuration".

    04.png

  2. Configure each item as shown below, then download the "SAML Metadata".
    Click "Save" to save the settings.

    Issuer The "Issuer/Entity ID" you noted from TrustLogin
    The "certificate" (.crt) you downloaded from TrustLogin
    The "Identity Provider URL" you noted from TrustLogin
    SP-Initiated Request Binding Select "HTTP-POST"
    (Optional) Check the users you want to exclude from SSO (optional)

    05.png

Return to the TrustLogin settings again.

Configuring the TrustLogin Admin Page (Registering the Metadata)

  1. Upload the metadata downloaded from McAfee using "Select Metadata" under "Service Provider Settings".

    06.png

  2. Click the "Register" button to save.

Configuring TrustLogin Users

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "McAfee MVISION (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.
  4. Click the app on "My Page" or in the browser extension, and confirm that login succeeds.

② When an administrator adds a member

  1. On the "Admin Page > Apps" menu, search for and click the "McAfee MVISION (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.