How to Configure SAML Authentication for PrimeDrive

Item

Details

Pre-check

  • Prior configuration in PrimeDrive is required.

  • Please refer to the manual provided by PrimeDrive for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Preparation

Add a Custom Attribute to User Information

Add the PrimeDrive "User ID" as a custom attribute in the TrustLogin member information.
Note: This step is not required if the "PrimeDrive User ID" matches the "email address registered in TrustLogin". Please proceed to the next step.

【PrimeDrive User Information Screen】
05.png

【TrustLogin Custom Attribute Configuration Example】
04.png

Please refer to the pages below for how to configure custom attributes. The attribute name for the custom attribute can be anything you choose.

How to Configure Custom Attributes (Individual Registration)

How to Configure Custom Attributes (Bulk Registration)

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. On the "Register Corporate App" screen, search for and select "PrimeDrive (SAML)".
    02.png

  3. Note the value of the "IdP URL" in the "Identity Provider Information" section, and download the certificate using the "Get Certificate" button.
    03.png

Now, switch to configuring PrimeDrive. Open PrimeDrive (the administrator site) in a separate window.

PrimeDrive Configuration

  1. Log in to PrimeDrive (the administrator site) and open the "Corporate Policy > Authentication" tab.
    06.png

  2. Configure each item as follows.
    IdP SSO Endpoint Address The "IdP URL" noted from TrustLogin
    IdP Logout Processing Address https://portal.trustlogin.com/
    IdP Public Key Certificate Upload the "Certificate" downloaded from TrustLogin

    07.png

  3. Note the values of the "SP Service URL" and "SP Certificate Subscriber Identifier", and click the "Go to Confirmation Screen" button.
    08.png

  4. Click the "Confirm" button.
    09.png

Return to the TrustLogin configuration screen again.

TrustLogin Admin Page Settings (Continued)

  1. Configure each item in "Service Provider Settings" as follows.
    Login URL Enter the PrimeDrive login URL
    Entity ID The "SP Certificate Subscriber Identifier" noted from PrimeDrive
    Name ID Value

    ・If the PrimeDrive user ID and the TrustLogin email address are the same
     → Set "Member > email"

    ・If the PrimeDrive user ID and the TrustLogin email address are different
     → Set "Custom Attribute > the custom attribute name you configured"

    ACS URL for Service The "SP Service URL" noted from PrimeDrive

    PrimeDrive.png

  2. Save the configuration by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "PrimeDrive (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.
  4. Click the app on "My Page" or in the "browser extension" and check that login succeeds.

② When an Administrator Adds Members

  1. Search for and click the "PrimeDrive (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SSO for the Desktop App

  1. Download the PrimeDrive desktop app.
  2. Open the desktop app and click "Settings".
    PD_______01.png
  3. Open the "SAML Authentication Settings" tab.
  4. Check "Use SAML Authentication", and enter the Corporate ID provided by PrimeDrive in "Corporate ID".
  5. Enter the authentication code shown on the screen and click "OK".
    PD_______02.png
  6. The TrustLogin login screen appears. Enter your TrustLogin login information.
    PB______03.png
  7. Once authentication succeeds, the Network Drive folder opens.
    PD______03.png

How to Configure SSO for the iOS Native App

  1. Download the PrimeDrive app from the iOS App Store.
  2. Open the app and tap the gear icon at the top right.
    PB____01.png
  3. Scroll the settings screen and select "SAML Authentication" under "Integration".
    PB____02.png
  4. Turn on the "Use SAML Authentication" toggle.
  5. Enter the Corporate ID provided by PrimeDrive in "Corporate ID".
  6. Enter the authentication code shown on the screen and tap "Done".
    PB____03.png
  7. The TrustLogin login screen appears. Enter your TrustLogin login information.
    PB____04.png

How to Configure SAML Authentication for PrimeDrive

Item

Details

Pre-check

  • Prior configuration in PrimeDrive is required.

  • Please refer to the manual provided by PrimeDrive for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Preparation

Add a Custom Attribute to User Information

Add the PrimeDrive "User ID" as a custom attribute in the TrustLogin member information.
Note: This step is not required if the "PrimeDrive User ID" matches the "email address registered in TrustLogin". Please proceed to the next step.

【PrimeDrive User Information Screen】
05.png

【TrustLogin Custom Attribute Configuration Example】
04.png

Please refer to the pages below for how to configure custom attributes. The attribute name for the custom attribute can be anything you choose.

How to Configure Custom Attributes (Individual Registration)

How to Configure Custom Attributes (Bulk Registration)

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. On the "Register Corporate App" screen, search for and select "PrimeDrive (SAML)".
    02.png

  3. Note the value of the "IdP URL" in the "Identity Provider Information" section, and download the certificate using the "Get Certificate" button.
    03.png

Now, switch to configuring PrimeDrive. Open PrimeDrive (the administrator site) in a separate window.

PrimeDrive Configuration

  1. Log in to PrimeDrive (the administrator site) and open the "Corporate Policy > Authentication" tab.
    06.png

  2. Configure each item as follows.
    IdP SSO Endpoint Address The "IdP URL" noted from TrustLogin
    IdP Logout Processing Address https://portal.trustlogin.com/
    IdP Public Key Certificate Upload the "Certificate" downloaded from TrustLogin

    07.png

  3. Note the values of the "SP Service URL" and "SP Certificate Subscriber Identifier", and click the "Go to Confirmation Screen" button.
    08.png

  4. Click the "Confirm" button.
    09.png

Return to the TrustLogin configuration screen again.

TrustLogin Admin Page Settings (Continued)

  1. Configure each item in "Service Provider Settings" as follows.
    Login URL Enter the PrimeDrive login URL
    Entity ID The "SP Certificate Subscriber Identifier" noted from PrimeDrive
    Name ID Value

    ・If the PrimeDrive user ID and the TrustLogin email address are the same
     → Set "Member > email"

    ・If the PrimeDrive user ID and the TrustLogin email address are different
     → Set "Custom Attribute > the custom attribute name you configured"

    ACS URL for Service The "SP Service URL" noted from PrimeDrive

    PrimeDrive.png

  2. Save the configuration by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "PrimeDrive (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.
  4. Click the app on "My Page" or in the "browser extension" and check that login succeeds.

② When an Administrator Adds Members

  1. Search for and click the "PrimeDrive (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SSO for the Desktop App

  1. Download the PrimeDrive desktop app.
  2. Open the desktop app and click "Settings".
    PD_______01.png
  3. Open the "SAML Authentication Settings" tab.
  4. Check "Use SAML Authentication", and enter the Corporate ID provided by PrimeDrive in "Corporate ID".
  5. Enter the authentication code shown on the screen and click "OK".
    PD_______02.png
  6. The TrustLogin login screen appears. Enter your TrustLogin login information.
    PB______03.png
  7. Once authentication succeeds, the Network Drive folder opens.
    PD______03.png

How to Configure SSO for the iOS Native App

  1. Download the PrimeDrive app from the iOS App Store.
  2. Open the app and tap the gear icon at the top right.
    PB____01.png
  3. Scroll the settings screen and select "SAML Authentication" under "Integration".
    PB____02.png
  4. Turn on the "Use SAML Authentication" toggle.
  5. Enter the Corporate ID provided by PrimeDrive in "Corporate ID".
  6. Enter the authentication code shown on the screen and tap "Done".
    PB____03.png
  7. The TrustLogin login screen appears. Enter your TrustLogin login information.
    PB____04.png