Initial Setup Steps for Identity Provisioning with HCP Terraform

This page describes the initial setup steps for using TrustLogin as the source of identity
to perform Identity Provisioning to HCP Terraform.

Note: For detailed instructions on operating HCP Terraform, please refer to the documentation provided by HCP Terraform.

Item Details
Pre-check
  • HCP Terraform administrator privileges are required.
Setup Flow / Manual

Note: After connecting TrustLogin and HCP Terraform using the steps on this page,
 please proceed to configuring user synchronization.

Provisioning Target Supports user provisioning
Supports group provisioning
SAML Authentication Setup Manual

How to Configure SAML Authentication for Terraform Cloud

  • The Identity Provisioning configuration created in this procedure can be linked to an existing SAML app.
    For details on the SAML app configuration, see here.
Notes
  • None in particular

Setup Steps

HCP Terraform Settings

  1. Log in to HCP Terraform with administrator privileges, and from "Choose an organization" in the upper left of the screen,
    click the organization (Organization) you want to connect.

  2. Click "Settings" in the left-hand menu.
  3. Click "API Tokens" in the left-hand menu, then click "Generate an organization token".

  4. Click "Generate token".

  5. Make a note of the token that is displayed.



    This completes the preliminary preparation on the HCP Terraform side. Next, configure the settings on the TrustLogin side.

TrustLogin Settings

  1. Log in to the TrustLogin Admin Page, and from the "Admin Page > Settings > Optional Features" menu,
    open "Settings" next to "Identity Provisioning".
    IDProvServiceCommon01.png

  2. Click "Add Service".
    IDProvServiceCommon02.png
  3. On the Add Service screen, search for and select "Terraform", then click the "Add" button.
    IDProvServiceCommon03.png
  4. You will be redirected to the "Identity Provisioning > Terraform" page.
    Click the "Edit" button.
    IDProvServiceCommon04.png
  5. Open "Access Settings", enter the following values for the settings items, and click "Save".

    Connection URL HCP Terraform Settings The organization name you selected in step 1
    Access Token HCP Terraform Settings The value of the "organization token" you copied in step 5

    zen_IDProv_02.png

  6. Click the "Connect" button at the top right of the screen.
    zen_IDProv_03.png

  7. Once the button status updates to "Connected", the initial setup is complete.
    Connected_IDProv.png

Next step: The manual for configuring user synchronization is available here

Values You Can Configure in Attribute Mapping

You can map any attribute on the TrustLogin side to any attribute on the HCP Terraform side.
For configuration instructions, see here

Available Default Functions

Initial Setup Steps for Identity Provisioning with HCP Terraform

This page describes the initial setup steps for using TrustLogin as the source of identity
to perform Identity Provisioning to HCP Terraform.

Note: For detailed instructions on operating HCP Terraform, please refer to the documentation provided by HCP Terraform.

Item Details
Pre-check
  • HCP Terraform administrator privileges are required.
Setup Flow / Manual

Note: After connecting TrustLogin and HCP Terraform using the steps on this page,
 please proceed to configuring user synchronization.

Provisioning Target Supports user provisioning
Supports group provisioning
SAML Authentication Setup Manual

How to Configure SAML Authentication for Terraform Cloud

  • The Identity Provisioning configuration created in this procedure can be linked to an existing SAML app.
    For details on the SAML app configuration, see here.
Notes
  • None in particular

Setup Steps

HCP Terraform Settings

  1. Log in to HCP Terraform with administrator privileges, and from "Choose an organization" in the upper left of the screen,
    click the organization (Organization) you want to connect.

  2. Click "Settings" in the left-hand menu.
  3. Click "API Tokens" in the left-hand menu, then click "Generate an organization token".

  4. Click "Generate token".

  5. Make a note of the token that is displayed.



    This completes the preliminary preparation on the HCP Terraform side. Next, configure the settings on the TrustLogin side.

TrustLogin Settings

  1. Log in to the TrustLogin Admin Page, and from the "Admin Page > Settings > Optional Features" menu,
    open "Settings" next to "Identity Provisioning".
    IDProvServiceCommon01.png

  2. Click "Add Service".
    IDProvServiceCommon02.png
  3. On the Add Service screen, search for and select "Terraform", then click the "Add" button.
    IDProvServiceCommon03.png
  4. You will be redirected to the "Identity Provisioning > Terraform" page.
    Click the "Edit" button.
    IDProvServiceCommon04.png
  5. Open "Access Settings", enter the following values for the settings items, and click "Save".

    Connection URL HCP Terraform Settings The organization name you selected in step 1
    Access Token HCP Terraform Settings The value of the "organization token" you copied in step 5

    zen_IDProv_02.png

  6. Click the "Connect" button at the top right of the screen.
    zen_IDProv_03.png

  7. Once the button status updates to "Connected", the initial setup is complete.
    Connected_IDProv.png

Next step: The manual for configuring user synchronization is available here

Values You Can Configure in Attribute Mapping

You can map any attribute on the TrustLogin side to any attribute on the HCP Terraform side.
For configuration instructions, see here

Available Default Functions