Integration of LogMeIn with DoubleClue using SAML

1. Introduction

This guide is intended for users of LogMeIn, GoToMeeting, GoToWebinar & GoToTraining who would like their employees to log in to LogMeIn via DoubleClue Multi-Factor Authentication (MFA) using SAML 2.0. For more information on these products, please visit https://www.logmein.com/.

Requirements:

  • LogMeIn account
  • DoubleClue Enterprise Management (DCEM) installation with readily registered users matching employee emails.

2. Preparing DCEM to be an Identity Provider

In order to prepare DCEM to be an Identity Provider, please see chapter 12 of “DCEM_Manual_EN.pdf”.

3. Setting up LogMeIn

  1. Log into your LogMeIn Organization Center at https://organization.logmeininc.com/ .
  2. Go to the Identity Provider Tab.
  3. For “How would you like to configure your SAML IDP?” choose “Upload SAML metadata file”.
  4. Click “Upload metadata file”, and choose the IdP Metadata XML file you downloaded during SAML setup (see chapter 12.1.4 of “DCEM_Manual_EN.pdf”).
  5. Click “Save”.

DCEM is now registered as an Identity Provider for LogMeIn.

4. Setting LogMeIn as a Service Provider for DCEM

Option 1: Using the pre-set configuration

  1. In DCEM, go to main menu item “SAML”, sub menu “SP Metadata”.
  2. Click “Add”.
  3. From the dropdown menu, choose “LogMeIn” and click “Continue”.
  4. Click “OK”.

Option 2: Using a custom configuration

  1. Download the XML-File from https://authentication.logmeininc.com/saml/sp .
  2. In DCEM, go to main menu item “SAML”, sub menu “SP Metadata”.
  3. Click “Add”.
  4. From the dropdown menu, choose “Custom” and click “Continue”.
  5. Upload the downloaded file using the “Upload” button.
  6. In “Display Name”, type in a unique friendly name for this SP, such as “LogMeIn”.
  7. Go to the “Details” tab.
  8. Choose “EMAIL” as the “Expected NameID Format”.
  9. Click “OK”.

LogMeIn is now registered as a Service Provider for DCEM.