|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
| 〇 |
Custom attribute Note: For how to configure custom attributes, see here |
|
|
SP-side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
API-based Provisioning supported (account management available in TrustLogin) |
|
|
SAML JIT provisioning supported (account management available in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
|
IdP-Initiated SSO |
|
|
Verified Operation by Device |
〇 |
PC - Browser |
|
〇 |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
〇 |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
ー |
Android - Native App |
|
Preparation
Add a Custom Attribute to User Information
Add the PrimeDrive "User ID" as a custom attribute in the TrustLogin member information.
Note: This step is not required if the "PrimeDrive User ID" matches the "email address registered in TrustLogin". Please proceed to the next step.
【PrimeDrive User Information Screen】
【TrustLogin Custom Attribute Configuration Example】
Please refer to the pages below for how to configure custom attributes. The attribute name for the custom attribute can be anything you choose.
How to Configure Custom Attributes (Individual Registration)
How to Configure Custom Attributes (Bulk Registration)
TrustLogin Admin Page Settings
- Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
- On the "Register Corporate App" screen, search for and select "PrimeDrive (SAML)".
- Note the value of the "IdP URL" in the "Identity Provider Information" section, and download the certificate using the "Get Certificate" button.
Now, switch to configuring PrimeDrive. Open PrimeDrive (the administrator site) in a separate window.
PrimeDrive Configuration
-
Log in to PrimeDrive (the administrator site) and open the "Corporate Policy > Authentication" tab.
- Configure each item as follows.
IdP SSO Endpoint Address The "IdP URL" noted from TrustLogin IdP Logout Processing Address https://portal.trustlogin.com/ IdP Public Key Certificate Upload the "Certificate" downloaded from TrustLogin
- Note the values of the "SP Service URL" and "SP Certificate Subscriber Identifier", and click the "Go to Confirmation Screen" button.
- Click the "Confirm" button.
Return to the TrustLogin configuration screen again.
TrustLogin Admin Page Settings (Continued)
-
Configure each item in "Service Provider Settings" as follows.
Login URL Enter the PrimeDrive login URL Entity ID The "SP Certificate Subscriber Identifier" noted from PrimeDrive Name ID Value ・If the PrimeDrive user ID and the TrustLogin email address are the same
→ Set "Member > email"
・If the PrimeDrive user ID and the TrustLogin email address are different
→ Set "Custom Attribute > the custom attribute name you configured"ACS URL for Service The "SP Service URL" noted from PrimeDrive
-
Save the configuration by clicking the "Register" button.
TrustLogin User Settings
① When a User Adds the App via My Page
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "PrimeDrive (SAML)" and click the "Next" button at the top right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
- Click the app on "My Page" or in the "browser extension" and check that login succeeds.
② When an Administrator Adds Members
- Search for and click the "PrimeDrive (SAML)" app in the "Admin Page > App" menu.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.
How to Configure SSO for the Desktop App
- Download the PrimeDrive desktop app.
-
Open the desktop app and click "Settings".
- Open the "SAML Authentication Settings" tab.
- Check "Use SAML Authentication", and enter the Corporate ID provided by PrimeDrive in "Corporate ID".
-
Enter the authentication code shown on the screen and click "OK".
- The TrustLogin login screen appears. Enter your TrustLogin login information.
- Once authentication succeeds, the Network Drive folder opens.
How to Configure SSO for the iOS Native App
- Download the PrimeDrive app from the iOS App Store.
- Open the app and tap the gear icon at the top right.
- Scroll the settings screen and select "SAML Authentication" under "Integration".
- Turn on the "Use SAML Authentication" toggle.
- Enter the Corporate ID provided by PrimeDrive in "Corporate ID".
-
Enter the authentication code shown on the screen and tap "Done".
-
The TrustLogin login screen appears. Enter your TrustLogin login information.