Initial Setup Steps for Identity Provisioning with CrowdStrike

This page describes the initial setup steps for using TrustLogin as the source of identity
to perform Identity Provisioning to CrowdStrike.

Note: For detailed instructions on operating CrowdStrike, please refer to the manual provided by CrowdStrike.

Item

Details

Pre-check

  • CrowdStrike administrator privileges are required.

Setup Flow / Manual

Note: After connecting TrustLogin and CrowdStrike using the steps on this page,
 please proceed to configuring user synchronization.

Provisioning Target

Supports user provisioning
Supports group provisioning

SAML Authentication Setup Manual

-

Notes

  • None in particular

 

Setup Steps

CrowdStrike Settings

  1.  Log in to CrowdStrike with administrator privileges, and from the menu, go to
    "Support and Resources > API clients and keys".
    crowd_ID_01.png
     
  2. Click "Create API Client".
    crowd_ID_02.png
     
     

  3. On the API client creation screen, configure the following settings, and click "Create".

    Client name Set any name you like
    Scope Check "Read" and "Write" under "User management"

    crowd_ID_03.png
     

  4. Copy the following information displayed. (You will use this in the TrustLogin settings.)
    Note: The token cannot be viewed again. Please make sure you have copied it before proceeding.

    • Client ID

    • Secret

    • Base URL

    crowd_ID_04.png

    This completes the preparation on the CrowdStrike side. Next, configure the settings on the TrustLogin side.
     

TrustLogin Settings

  1. Log in to the TrustLogin Admin Page, and from the "Admin Page > Settings > Optional Features" menu,
    open "Settings" next to "Identity Provisioning".
    IDProvServiceCommon01.png
     

  2. Click "Add Service".
    IDProvServiceCommon02.png
     
     
  3. On the Add Service screen, search for and select "CrowdStrike", then click the "Add" button.
    IDProvServiceCommon03.png
     
  4. You will be redirected to the "Identity Provisioning > CrowdStrike" page.
    Click the "Edit" button.
    IDProvServiceCommon04.png
     
  5. Open "Access Settings", enter the following values for the settings items, and click "Save".

    Connection URL CrowdStrike Settings The value of "Base URL" you copied in step 4
    Client ID CrowdStrike Settings The value of "Client ID" you copied in step 4
    Client Secret CrowdStrike Settings The value of "Client Secret" you copied in step 4

    zen_IDProv_02.png
     
     

  6. Click the "Connect" button in the upper right of the screen. 
    zen_IDProv_03.png
     

     

  7. Once the button status updates to "Connected", the initial setup is complete.
    Connected_IDProv.png
     

Next step: The manual for configuring user synchronization is available here

 

Values You Can Configure in Attribute Mapping

The following values can be specified as default functions for CrowdStrike.

Value Description
Full name The full name with the last name first.
Full name with first name first The full name with the first name first.
Username from email Takes the part of the email address before the @ and limits it to a maximum of 21 characters.
Username from email (special characters removed) Generates a username from the user’s email address.
Extracts the local part and removes invalid characters (only letters, numbers, and underscores (_) are allowed).

Note: For an overview of the attribute mapping feature and how to configure it, please check here.

 


 

 

 

 

 

 

 

 

 

 

Initial Setup Steps for Identity Provisioning with CrowdStrike

This page describes the initial setup steps for using TrustLogin as the source of identity
to perform Identity Provisioning to CrowdStrike.

Note: For detailed instructions on operating CrowdStrike, please refer to the manual provided by CrowdStrike.

Item

Details

Pre-check

  • CrowdStrike administrator privileges are required.

Setup Flow / Manual

Note: After connecting TrustLogin and CrowdStrike using the steps on this page,
 please proceed to configuring user synchronization.

Provisioning Target

Supports user provisioning
Supports group provisioning

SAML Authentication Setup Manual

-

Notes

  • None in particular

 

Setup Steps

CrowdStrike Settings

  1.  Log in to CrowdStrike with administrator privileges, and from the menu, go to
    "Support and Resources > API clients and keys".
    crowd_ID_01.png
     
  2. Click "Create API Client".
    crowd_ID_02.png
     
     

  3. On the API client creation screen, configure the following settings, and click "Create".

    Client name Set any name you like
    Scope Check "Read" and "Write" under "User management"

    crowd_ID_03.png
     

  4. Copy the following information displayed. (You will use this in the TrustLogin settings.)
    Note: The token cannot be viewed again. Please make sure you have copied it before proceeding.

    • Client ID

    • Secret

    • Base URL

    crowd_ID_04.png

    This completes the preparation on the CrowdStrike side. Next, configure the settings on the TrustLogin side.
     

TrustLogin Settings

  1. Log in to the TrustLogin Admin Page, and from the "Admin Page > Settings > Optional Features" menu,
    open "Settings" next to "Identity Provisioning".
    IDProvServiceCommon01.png
     

  2. Click "Add Service".
    IDProvServiceCommon02.png
     
     
  3. On the Add Service screen, search for and select "CrowdStrike", then click the "Add" button.
    IDProvServiceCommon03.png
     
  4. You will be redirected to the "Identity Provisioning > CrowdStrike" page.
    Click the "Edit" button.
    IDProvServiceCommon04.png
     
  5. Open "Access Settings", enter the following values for the settings items, and click "Save".

    Connection URL CrowdStrike Settings The value of "Base URL" you copied in step 4
    Client ID CrowdStrike Settings The value of "Client ID" you copied in step 4
    Client Secret CrowdStrike Settings The value of "Client Secret" you copied in step 4

    zen_IDProv_02.png
     
     

  6. Click the "Connect" button in the upper right of the screen. 
    zen_IDProv_03.png
     

     

  7. Once the button status updates to "Connected", the initial setup is complete.
    Connected_IDProv.png
     

Next step: The manual for configuring user synchronization is available here

 

Values You Can Configure in Attribute Mapping

The following values can be specified as default functions for CrowdStrike.

Value Description
Full name The full name with the last name first.
Full name with first name first The full name with the first name first.
Username from email Takes the part of the email address before the @ and limits it to a maximum of 21 characters.
Username from email (special characters removed) Generates a username from the user’s email address.
Extracts the local part and removes invalid characters (only letters, numbers, and underscores (_) are allowed).

Note: For an overview of the attribute mapping feature and how to configure it, please check here.