This page describes the initial setup steps for using TrustLogin as the source of identity
to perform Identity Provisioning to Kibela.
Note: For detailed instructions on operating Kibela, please refer to the documentation provided by Kibela.
| Item | Details | |
| Pre-check |
|
|
| Setup Flow / Manual |
Note: After connecting TrustLogin and Kibela using the steps on this page, |
|
| Provisioning Target | 〇 | Supports user provisioning |
| 〇 | Supports group provisioning | |
| SAML Authentication Setup Manual |
SAML JIT Setup Method for Kibela
|
|
| Notes |
|
|
Setup Steps
Kibela Settings
- Log in to Kibela with administrator privileges, click the icon in the upper right of the screen, then click "Member Management".
- Scroll down the screen and click "Provisioning" under the "Team Settings" section.
- Click "Create New Token".
On the confirmation screen, click "Create".
Copy the displayed token and save it.
Note: You will not be able to view the token again after saving. Please make sure you have copied it without omission.
Copy and save the "{customer environment's kibela subdomain}.kibe.la/" (FQDN) portion of the Admin Page URL.
This completes the preparation on the Kibela side. Next, configure the settings on the TrustLogin side.
TrustLogin Settings
Log in to the TrustLogin Admin Page, and from the "Admin Page > Settings > Optional Features" menu,
open "Settings" next to "Identity Provisioning".
- Click "Add Service".
- On the Add Service screen, search for and select "Kibela", then click the "Add" button.
- You will be redirected to the "Identity Provisioning > Kibela" page.
Click the "Edit" button.
-
Open "Access Settings", enter the following values for the settings items, and click "Save".
Connection URL Kibela Settings The "{customer environment's kibela subdomain}.kibe.la/" portion you copied in step 6 Access Token Kibela Settings The value of the token you copied in step 5
-
Click the "Connect" button in the upper right of the screen.
Once the button status updates to "Connected", the initial setup is complete.
Next step: The manual for configuring user synchronization is available here
Values You Can Configure in Attribute Mapping
You can map any attribute on the TrustLogin side to any attribute on the Kibela side.
For configuration instructions, see here
Available Default Functions
- In addition to default functions common to all services, you can specify the following values.
| Value | Description |
Generates a Kibela username from the user's email address |
Extracts the portion of the email address before the "@", replaces any disallowed characters (any character other than uppercase letters, lowercase letters, numbers, periods ".", hyphens "-", and underscores "_") with an underscore, and limits the result to a maximum of 30 characters. |