Initial Setup Steps for Identity Provisioning with Safie

This page describes the initial setup steps for using TrustLogin as the source of identity
to perform Identity Provisioning to Safie.

Note: For detailed instructions on operating Safie, please refer to the documentation provided by Safie.

Item Details
Pre-check
  • Safie administrator privileges are required.
Setup Flow / Manual

Note: After connecting TrustLogin and Safie using the steps on this page,
 please proceed to configuring user synchronization.

Provisioning Target Supports user provisioning
Supports group provisioning
SAML Authentication Setup Manual

Safie SAML JIT Setup Guide

  • The Identity Provisioning configuration created in this procedure can be linked to an existing SAML app.
    For details on the SAML app configuration, please see here.
  • To prevent conflicts in updating user attributes caused by using Identity Provisioning together with SAML JIT,
    we recommend not configuring the "SAML Attribute Settings" for duplicate user attributes when creating a SAML app.
    Note: Behavior depends on the service specifications, so please check with each SP for details.
Notes
  • Enabling/disabling members is not supported.

Setup Steps

Safie Settings

  1. Log in to Safie with administrator privileges, and click "SSO Settings" from "Admin Settings" in the left menu.

  2. Scroll down to the "IdP Registration Information" section in the center of the screen,
    and copy the "SCIM URL".

  3. Click the "Recreate" button for "Secret Token".

    Note: Click "Recreate" on the confirmation screen.

  4. The "Secret Token" will be created and displayed. Copy it.
    Note: You will not be able to view the token again after "Save". Please make sure not to miss copying it.


    This completes the preparation on the Safie side. Next, configure the settings on the TrustLogin side.

TrustLogin Settings

  1. Log in to the TrustLogin Admin Page, and from the "Admin Page > Settings > Optional Features" menu,
    open "Settings" next to "Identity Provisioning".
    IDProvServiceCommon01.png

  2. Click "Add Service".
    IDProvServiceCommon02.png
  3. On the Add Service screen, search for and select "Safie", then click the "Add" button.
    IDProvServiceCommon03.png
  4. You will be redirected to the "Identity Provisioning > Safie" page.
    Click the "Edit" button.
    IDProvServiceCommon04.png
  5. Open "Access Settings", enter the following values for the settings items, and click "Save".

    Connection URL Safie Settings The value of "SCIM URL" copied in step 2
    Access Token Safie Settings The value of "Secret Token" copied in step 4

    zen_IDProv_02.png

  6. Click the "Connect" button in the upper right of the screen.
    zen_IDProv_03.png

  7. Once the button status updates to "Connected", the initial setup is complete.
    Connected_IDProv.png

Next step: The manual for configuring user synchronization is available here

Values You Can Configure in Attribute Mapping

You can map any attribute on the TrustLogin side to any attribute on the Safie side.
For configuration instructions, see here

Available Default Functions

Initial Setup Steps for Identity Provisioning with Safie

This page describes the initial setup steps for using TrustLogin as the source of identity
to perform Identity Provisioning to Safie.

Note: For detailed instructions on operating Safie, please refer to the documentation provided by Safie.

Item Details
Pre-check
  • Safie administrator privileges are required.
Setup Flow / Manual

Note: After connecting TrustLogin and Safie using the steps on this page,
 please proceed to configuring user synchronization.

Provisioning Target Supports user provisioning
Supports group provisioning
SAML Authentication Setup Manual

Safie SAML JIT Setup Guide

  • The Identity Provisioning configuration created in this procedure can be linked to an existing SAML app.
    For details on the SAML app configuration, please see here.
  • To prevent conflicts in updating user attributes caused by using Identity Provisioning together with SAML JIT,
    we recommend not configuring the "SAML Attribute Settings" for duplicate user attributes when creating a SAML app.
    Note: Behavior depends on the service specifications, so please check with each SP for details.
Notes
  • Enabling/disabling members is not supported.

Setup Steps

Safie Settings

  1. Log in to Safie with administrator privileges, and click "SSO Settings" from "Admin Settings" in the left menu.

  2. Scroll down to the "IdP Registration Information" section in the center of the screen,
    and copy the "SCIM URL".

  3. Click the "Recreate" button for "Secret Token".

    Note: Click "Recreate" on the confirmation screen.

  4. The "Secret Token" will be created and displayed. Copy it.
    Note: You will not be able to view the token again after "Save". Please make sure not to miss copying it.


    This completes the preparation on the Safie side. Next, configure the settings on the TrustLogin side.

TrustLogin Settings

  1. Log in to the TrustLogin Admin Page, and from the "Admin Page > Settings > Optional Features" menu,
    open "Settings" next to "Identity Provisioning".
    IDProvServiceCommon01.png

  2. Click "Add Service".
    IDProvServiceCommon02.png
  3. On the Add Service screen, search for and select "Safie", then click the "Add" button.
    IDProvServiceCommon03.png
  4. You will be redirected to the "Identity Provisioning > Safie" page.
    Click the "Edit" button.
    IDProvServiceCommon04.png
  5. Open "Access Settings", enter the following values for the settings items, and click "Save".

    Connection URL Safie Settings The value of "SCIM URL" copied in step 2
    Access Token Safie Settings The value of "Secret Token" copied in step 4

    zen_IDProv_02.png

  6. Click the "Connect" button in the upper right of the screen.
    zen_IDProv_03.png

  7. Once the button status updates to "Connected", the initial setup is complete.
    Connected_IDProv.png

Next step: The manual for configuring user synchronization is available here

Values You Can Configure in Attribute Mapping

You can map any attribute on the TrustLogin side to any attribute on the Safie side.
For configuration instructions, see here

Available Default Functions