This page describes the initial setup steps for using TrustLogin as the source of identity
to perform Identity Provisioning to CrowdStrike.
Note: For detailed instructions on operating CrowdStrike, please refer to the manual provided by CrowdStrike.
Item |
Details |
|
Pre-check |
|
|
Setup Flow / Manual |
Note: After connecting TrustLogin and CrowdStrike using the steps on this page, |
|
Provisioning Target |
〇 | Supports user provisioning |
| 〇 | Supports group provisioning | |
SAML Authentication Setup Manual |
- | |
Notes |
|
|
Setup Steps
CrowdStrike Settings
- Log in to CrowdStrike with administrator privileges, and from the menu, go to
"Support and Resources > API clients and keys".
Click "Create API Client".
-
On the API client creation screen, configure the following settings, and click "Create".
Client name Set any name you like Scope Check "Read" and "Write" under "User management"
-
Copy the following information displayed. (You will use this in the TrustLogin settings.)
Note: The token cannot be viewed again. Please make sure you have copied it before proceeding.Client ID
Secret
Base URL
This completes the preparation on the CrowdStrike side. Next, configure the settings on the TrustLogin side.
TrustLogin Settings
Log in to the TrustLogin Admin Page, and from the "Admin Page > Settings > Optional Features" menu,
open "Settings" next to "Identity Provisioning".
- Click "Add Service".
- On the Add Service screen, search for and select "CrowdStrike", then click the "Add" button.
- You will be redirected to the "Identity Provisioning > CrowdStrike" page.
Click the "Edit" button.
-
Open "Access Settings", enter the following values for the settings items, and click "Save".
Connection URL CrowdStrike Settings The value of "Base URL" you copied in step 4 Client ID CrowdStrike Settings The value of "Client ID" you copied in step 4 Client Secret CrowdStrike Settings The value of "Client Secret" you copied in step 4
-
Click the "Connect" button in the upper right of the screen.
Once the button status updates to "Connected", the initial setup is complete.
Next step: The manual for configuring user synchronization is available here
Values You Can Configure in Attribute Mapping
The following values can be specified as default functions for CrowdStrike.
| Value | Description |
| Full name | The full name with the last name first. |
| Full name with first name first | The full name with the first name first. |
| Username from email | Takes the part of the email address before the @ and limits it to a maximum of 21 characters. |
| Username from email (special characters removed) |
Generates a username from the user’s email address. Extracts the local part and removes invalid characters (only letters, numbers, and underscores (_) are allowed). |
Note: For an overview of the attribute mapping feature and how to configure it, please check here.