This page describes the initial setup procedure for provisioning identities to Duo
using TrustLogin as the identity source.
Note: For detailed instructions on operating Duo, please refer to the documentation provided by Duo.
| Item | Details | |
| Pre-check |
|
|
| Setup Flow / Manual |
Note: After connecting TrustLogin and Duo using the steps on this page, |
|
| Provisioning Target | 〇 | Supports user provisioning |
| 〇 | Supports group provisioning | |
| SAML Authentication Setup Manual | ー | |
| Remarks |
|
|
Setup Steps
Duo Settings
-
After logging in to Duo, click "Users" in the left-hand menu.
-
Click "External Directories".
-
Click the "SCIM Integrations" tab.
-
Click "New Generic SCIM Integration".
-
Under "API Credentials", click "Copy" next to "Base URL" to copy it.
-
Click "Copy" next to "Bearer Token" to copy it.
Note: This token cannot be displayed again, so be sure to copy it on this screen.
This completes the preparation on the Duo side. Next, configure the settings on the TrustLogin side.
TrustLogin Settings
Log in to the TrustLogin Admin Page, and from the "Admin Page > Settings > Optional Features" menu,
click "Settings" to the right of "Identity Provisioning" to open it.
-
Click "Add Service", enter "duo" or similar in the search field, select "Duo", and click the "Add" button.
-
You will be redirected to the "Identity Provisioning > Duo" page.
Click the "Edit" button. -
Enter the following values in "Access Settings", and click the "Register" button.
Connection URL The "Base URL" value copied in step 5 of Duo Settings Access Token The "Bearer Token" value copied in step 6 of Duo Settings -
Click the "Connect" button in the upper right of the screen.
-
Once the button status updates to "Connected", the initial setup is complete.
Values Configurable in Attribute Mapping
You can link any attribute on the TrustLogin side with any attribute on the Duo side.
For configuration instructions, see here
Available Default Functions
-
You can specify the default functions common to all services.
Next step: The manual for user sync settings is available here