[Legacy] How to Configure SAML Authentication for SmartDB

Due to an update to SmartDB, the latest manual is published on a separate page.
This is the old manual page. If you are setting up SmartDB SSO for the first time, please refer to the new manual page.

Item Details
Prerequisites
  • Prior setup is required on the SmartDB side.
  • You must create an account in SmartDB using the same email address as your TrustLogin account.
  • Please refer to the manual provided by SmartDB for the latest setup instructions.
Name ID Email address
Custom attribute Note: For instructions on setting custom attributes, see here
SP-side settings Configured by the administrator
Request the SP to configure the settings
Provisioning Supports provisioning via API (accounts can be managed in TrustLogin)
Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)
None (accounts are created in each system)
Access Method SP-Initiated SSO
IdP-Initiated SSO
Verified Operation by Device PC - Browser
PC - Desktop app
iOS - Standard browser (Safari)
iOS - TrustLogin mobile app in-app browser
iOS - Native app
Android - Standard browser (Chrome)
Android - TrustLogin mobile app in-app browser
Android - Native app
SAML Authentication Scope Enabled for everyone
Other: Enabled for everyone (both SAML authentication and password authentication are available)
Notes
  • Note: An error may be displayed temporarily during SAML authentication on the iOS native app, but you will still be able to log in afterward.

Table of Contents:

Configuring the TrustLogin Admin Page

Configuring SmartDB

Configuring TrustLogin Users

How to Log In

Configuring the TrustLogin Admin Page

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png
  2. Search on the "Register Company App" screen and select "SmartDB (SAML)".
    Note: Due to the release of a new template, the app name has been changed to "[Legacy] SmartDB (SAML)".
    SmartDB01.png
  3. Note down the "Identity Provider URL" under "Identity Provider Information", and download the certificate from "Get Certificate".
    SmartDB02.png
  4. Enter the login URL notified by SmartDB into all of the "Login URL", "Entity ID", and "ACS URL for Service" fields under "Service Provider Settings".

    Example: https://[your domain].smartdb.jp
    Note: Please make sure not to include a trailing "/".
    SmartDB03.png
  5. Click the "Register" button to save.

Configuring SmartDB

  1. Log in with an administrator account and select "System Administration" from the icon in the upper right.
    2025-12-11_10-58-25.png
  2. Open "Authentication & Security > Authentication" and click "Edit" for "SAML".
    06.png
  3. Configure each item on the "Basic Settings" tab as follows and save.

    Button name displayed on the login page Any button name
    Note: The button name you set will be displayed on the login screen. The default setting is also acceptable.
    SAML Sign-On Endpoint URL The "Identity Provider URL" obtained from TrustLogin
    X.509 Certificate The contents of the "Certificate" obtained from TrustLogin
    Name ID Unspecified (UNSPECIFIED)
    Authenticate using the device's default browser ON
    (If you are using client authentication, you will not be able to log in if this is OFF)
    Use universal links Optional


    07.png

    Note: You can change the SSO login button name in "Button name displayed on the login page".
    08.png

  4. Open the "IP Address Control" tab and configure it according to your company's policy.
    Note: This setting is optional.
    Note: If you select "Allow List", enter and save the IP addresses that are allowed to log in. If "Allow List" is selected, SAML login from the mobile app will no longer be possible.

    2025-12-10_17-40-05.png

  5. Click the "Save" button to save.

Configuring TrustLogin Users

① When a user adds the app from My Page

Note: The administrator must have already set up the SAML app in advance.

  1. Click the "Add App" button on "My Page".
  2. Select "SmartDB (SAML)" on the "Register App" screen and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. Search for the "SmartDB (SAML)" app on the "Admin Page > Apps" menu and click it.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Log In

① How to Log In via SP-Initiated SSO

  1. Open the SmartDB login screen, enter your email address, and proceed.
    09.png
  2. Click the SSO login button.
    08.png
  3. If you are already logged in to TrustLogin, you will be logged in to SmartDB automatically.
    If you are not logged in to TrustLogin, you will be redirected to the TrustLogin authentication screen. Once you authenticate, you will be logged in to SmartDB.

② How to Install the Native App

  1. Log in from your PC or smartphone, and open "Mobile Use" from the icon in the upper right of the page.
    SmartDB_____.png
  2. Scan the QR code displayed on your mobile device to install the app.
    SmartDB_____02.png
  3. Open the app, confirm that the SmartDB company ID has been entered automatically, and click "Next".
    Note: If the company ID is not entered after installation, scan the QR code again.
    SmartDB.png
  4. Click the SSO login button and log in.
    2025-12-11_11-31-54.png

[Legacy] How to Configure SAML Authentication for SmartDB

Due to an update to SmartDB, the latest manual is published on a separate page.
This is the old manual page. If you are setting up SmartDB SSO for the first time, please refer to the new manual page.

Item Details
Prerequisites
  • Prior setup is required on the SmartDB side.
  • You must create an account in SmartDB using the same email address as your TrustLogin account.
  • Please refer to the manual provided by SmartDB for the latest setup instructions.
Name ID Email address
Custom attribute Note: For instructions on setting custom attributes, see here
SP-side settings Configured by the administrator
Request the SP to configure the settings
Provisioning Supports provisioning via API (accounts can be managed in TrustLogin)
Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)
None (accounts are created in each system)
Access Method SP-Initiated SSO
IdP-Initiated SSO
Verified Operation by Device PC - Browser
PC - Desktop app
iOS - Standard browser (Safari)
iOS - TrustLogin mobile app in-app browser
iOS - Native app
Android - Standard browser (Chrome)
Android - TrustLogin mobile app in-app browser
Android - Native app
SAML Authentication Scope Enabled for everyone
Other: Enabled for everyone (both SAML authentication and password authentication are available)
Notes
  • Note: An error may be displayed temporarily during SAML authentication on the iOS native app, but you will still be able to log in afterward.

Table of Contents:

Configuring the TrustLogin Admin Page

Configuring SmartDB

Configuring TrustLogin Users

How to Log In

Configuring the TrustLogin Admin Page

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png
  2. Search on the "Register Company App" screen and select "SmartDB (SAML)".
    Note: Due to the release of a new template, the app name has been changed to "[Legacy] SmartDB (SAML)".
    SmartDB01.png
  3. Note down the "Identity Provider URL" under "Identity Provider Information", and download the certificate from "Get Certificate".
    SmartDB02.png
  4. Enter the login URL notified by SmartDB into all of the "Login URL", "Entity ID", and "ACS URL for Service" fields under "Service Provider Settings".

    Example: https://[your domain].smartdb.jp
    Note: Please make sure not to include a trailing "/".
    SmartDB03.png
  5. Click the "Register" button to save.

Configuring SmartDB

  1. Log in with an administrator account and select "System Administration" from the icon in the upper right.
    2025-12-11_10-58-25.png
  2. Open "Authentication & Security > Authentication" and click "Edit" for "SAML".
    06.png
  3. Configure each item on the "Basic Settings" tab as follows and save.

    Button name displayed on the login page Any button name
    Note: The button name you set will be displayed on the login screen. The default setting is also acceptable.
    SAML Sign-On Endpoint URL The "Identity Provider URL" obtained from TrustLogin
    X.509 Certificate The contents of the "Certificate" obtained from TrustLogin
    Name ID Unspecified (UNSPECIFIED)
    Authenticate using the device's default browser ON
    (If you are using client authentication, you will not be able to log in if this is OFF)
    Use universal links Optional


    07.png

    Note: You can change the SSO login button name in "Button name displayed on the login page".
    08.png

  4. Open the "IP Address Control" tab and configure it according to your company's policy.
    Note: This setting is optional.
    Note: If you select "Allow List", enter and save the IP addresses that are allowed to log in. If "Allow List" is selected, SAML login from the mobile app will no longer be possible.

    2025-12-10_17-40-05.png

  5. Click the "Save" button to save.

Configuring TrustLogin Users

① When a user adds the app from My Page

Note: The administrator must have already set up the SAML app in advance.

  1. Click the "Add App" button on "My Page".
  2. Select "SmartDB (SAML)" on the "Register App" screen and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. Search for the "SmartDB (SAML)" app on the "Admin Page > Apps" menu and click it.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Log In

① How to Log In via SP-Initiated SSO

  1. Open the SmartDB login screen, enter your email address, and proceed.
    09.png
  2. Click the SSO login button.
    08.png
  3. If you are already logged in to TrustLogin, you will be logged in to SmartDB automatically.
    If you are not logged in to TrustLogin, you will be redirected to the TrustLogin authentication screen. Once you authenticate, you will be logged in to SmartDB.

② How to Install the Native App

  1. Log in from your PC or smartphone, and open "Mobile Use" from the icon in the upper right of the page.
    SmartDB_____.png
  2. Scan the QR code displayed on your mobile device to install the app.
    SmartDB_____02.png
  3. Open the app, confirm that the SmartDB company ID has been entered automatically, and click "Next".
    Note: If the company ID is not entered after installation, scan the QR code again.
    SmartDB.png
  4. Click the SSO login button and log in.
    2025-12-11_11-31-54.png