2-2. (For Members) Installing the Device Restriction Tool and Device Certificate [Windows]

This page introduces the procedure, in a Windows environment,
for requesting and installing the certificate used by the device certificate feature.

Step 1: Request a Device Certificate [Windows]
Step 2: Install the Device Certificate [Windows]
Supplement 1: How to Uninstall Secure Authentication Suite [Windows]
Supplement 2: How to Delete a Certificate [Windows]


Note: If you use push notification authentication to log in to TrustLogin,
 please checkhere in advance.


For setup instructions on other operating systems, please refer to here.
For troubleshooting, please refer to here.

Step 1: Request a Device Certificate [Windows]

Install the certificate import tool
(Secure Authentication Suite, provided by Sixscape) required to request a device certificate,
and then request the certificate.

Note: If you uninstall the tool and then want to reinstall it, please restart your PC first.

Steps

  1. Download the Secure Authentication Suite installer file from the link below.
    Download Link

  2. Double-click the downloaded installer to run it.
    win01.png

  3. Click "Next".
    win02.png
  4. Select the installation destination directory and click "Next".
    win03.png
  5. Click "Next". The installation will begin.
    win04.png
  6. Once the installation is complete, click "Close" to close the window.
    win05.png
  7. Search for "Secure Authentication Suite" in the Windows Start menu and click it to run it.
    Win30.png

  8. The screen below will appear, and Secure Authentication Suite will be added to the task tray.
    Win31.png

  9. Launch Secure Authentication Suite from the task tray and confirm that the login form below appears.
    Win32.png 
    Note: If you are using Secure Authentication Suite version 1.0.7, the screen above will remain fixed on display.
     To hide it, click the Secure Authentication Suite icon in the task tray again, as you did when launching it.
  10. Enter the following information in each field of the login form and tap "Connect".
    ・Username or email address: email address
    ・Domain name             : trustlogin.com
     Win33.png
  11. The TrustLogin login screen will appear. Log in.
    win10.png win11.png

  12. Authentication will begin. This may take some time, so please wait.
    Win34.png

  13. Once authentication is complete, you will be taken to this screen.
    Select "Strong Device Authentication".
    Win35.png
  14. You will be taken to the screen below. Select "Start".
    Loading will begin.
    Win36.png  Win37.png
  15. You will be taken to the screen below. Select "Confirm Approval".
    Win38.png

    Note: The screen below may appear the first time you perform this action, but this is not a problem.
    Select "Back".
    Win39.png
  16. You will be taken to the screen below.
    Confirm that the status shown in the upper right is "Pending".
    Win40.png
    This completes the Step 1 procedure.
    Right-click the app icon in the task tray and exit the app.

Actions by the Administrator

Based on the operation in Step 1, the administrator will approve or deny the request. Please wait.

Once the request is approved, TrustLogin will send an email
with the subject "[GMO TrustLogin] Your Device Certificate Is Ready to Be Obtained".
If you receive this email, please proceed to the next step.

Note: Please contact your administrator regarding the status after making a request.

Step 2: Install the Device Certificate [Windows]

After requesting the certificate, these are the steps to follow once you have received
the "[GMO TrustLogin] Your Device Certificate Is Ready to Be Obtained" email.

Steps

  1. Launch the "Secure Authentication Suite" app and tap "Verify".
    Win41.png
  2. A form requesting login information will appear. Enter the following information in each field and tap "Connect".
    ・Username or email address: email address
    ・Domain name             : trustlogin.com
    Win42.png

  3. The TrustLogin login screen will appear. Log in.
    win10.png win11.png

  4. Authentication will begin. This may take some time, so please wait.
    Win43.png

  5. Once authentication is complete, activation will begin. Please wait.
    Win44.png
  6. When this screen appears, the certificate has been installed successfully.
    Tap "Finish".
    Win45.png
  7. The screen below will appear.
    The status in the upper right will change to "Active", and you can check the certificate information from the "Certificate" tab.
    Win46.png

    This completes the certificate installation process.

Step 3: How to Log In as a User Subject to Device Restrictions [Windows]

  1. In the TrustLogin login form, enter your Company ID and email address.
  2. The "Select a Certificate" dialog will appear. Select the installed client certificate and click "OK".
    Note: If multiple certificates are displayed, select the certificate whose subject is your own email address and whose issuer is "TrustLogin Client Authentication CA 2022".

    cl2-7.png

  3. Once you select the correct certificate, the password entry screen will appear. Please log in as usual.

    Note: If you do not select the correct certificate, the error message "This client certificate is not permitted by the administrator." will be displayed. If you selected the wrong certificate, you will need to restart your browser.

    Note: When using client authentication together with SAML authentication, whether single sign-on is possible outside the browser (e.g., in a mobile app) depends on the specifications of the app.

Supplement 1: How to Uninstall Secure Authentication Suite [Windows]

  1. Right-click the running Secure Authentication Suite app icon in the taskbar and exit the app.

  2. Open "Add or Remove Programs" from the Windows menu.


    After entering "secure" in the filter field, "Secure Authentication Suite" will appear. Click the "..." (ellipsis) and run the uninstall.

  3. After completing step 2, delete the two folders starting with "Sixscape" located under the "C:\Users\[username]\AppData\Local" folder.


    This completes the uninstallation process.

Supplement 2: How to Delete a Certificate [Windows]

  1. Open the Settings screen from the Windows menu.

  2. Enter "Internet Options" in the search box, then click "Internet Options" as it appears in the dropdown.

  3. The Properties screen will open. Select the "Content" tab at the top, then click the "Certificates" button.

  4. Select the target certificate from the certificate store, then click the Delete button.


    A confirmation dialog will appear. Click "Yes".


    This completes the certificate deletion process.

2-2. (For Members) Installing the Device Restriction Tool and Device Certificate [Windows]

This page introduces the procedure, in a Windows environment,
for requesting and installing the certificate used by the device certificate feature.

Step 1: Request a Device Certificate [Windows]
Step 2: Install the Device Certificate [Windows]
Supplement 1: How to Uninstall Secure Authentication Suite [Windows]
Supplement 2: How to Delete a Certificate [Windows]


Note: If you use push notification authentication to log in to TrustLogin,
 please checkhere in advance.


For setup instructions on other operating systems, please refer to here.
For troubleshooting, please refer to here.

Step 1: Request a Device Certificate [Windows]

Install the certificate import tool
(Secure Authentication Suite, provided by Sixscape) required to request a device certificate,
and then request the certificate.

Note: If you uninstall the tool and then want to reinstall it, please restart your PC first.

Steps

  1. Download the Secure Authentication Suite installer file from the link below.
    Download Link

  2. Double-click the downloaded installer to run it.
    win01.png

  3. Click "Next".
    win02.png
  4. Select the installation destination directory and click "Next".
    win03.png
  5. Click "Next". The installation will begin.
    win04.png
  6. Once the installation is complete, click "Close" to close the window.
    win05.png
  7. Search for "Secure Authentication Suite" in the Windows Start menu and click it to run it.
    Win30.png

  8. The screen below will appear, and Secure Authentication Suite will be added to the task tray.
    Win31.png

  9. Launch Secure Authentication Suite from the task tray and confirm that the login form below appears.
    Win32.png 
    Note: If you are using Secure Authentication Suite version 1.0.7, the screen above will remain fixed on display.
     To hide it, click the Secure Authentication Suite icon in the task tray again, as you did when launching it.
  10. Enter the following information in each field of the login form and tap "Connect".
    ・Username or email address: email address
    ・Domain name             : trustlogin.com
     Win33.png
  11. The TrustLogin login screen will appear. Log in.
    win10.png win11.png

  12. Authentication will begin. This may take some time, so please wait.
    Win34.png

  13. Once authentication is complete, you will be taken to this screen.
    Select "Strong Device Authentication".
    Win35.png
  14. You will be taken to the screen below. Select "Start".
    Loading will begin.
    Win36.png  Win37.png
  15. You will be taken to the screen below. Select "Confirm Approval".
    Win38.png

    Note: The screen below may appear the first time you perform this action, but this is not a problem.
    Select "Back".
    Win39.png
  16. You will be taken to the screen below.
    Confirm that the status shown in the upper right is "Pending".
    Win40.png
    This completes the Step 1 procedure.
    Right-click the app icon in the task tray and exit the app.

Actions by the Administrator

Based on the operation in Step 1, the administrator will approve or deny the request. Please wait.

Once the request is approved, TrustLogin will send an email
with the subject "[GMO TrustLogin] Your Device Certificate Is Ready to Be Obtained".
If you receive this email, please proceed to the next step.

Note: Please contact your administrator regarding the status after making a request.

Step 2: Install the Device Certificate [Windows]

After requesting the certificate, these are the steps to follow once you have received
the "[GMO TrustLogin] Your Device Certificate Is Ready to Be Obtained" email.

Steps

  1. Launch the "Secure Authentication Suite" app and tap "Verify".
    Win41.png
  2. A form requesting login information will appear. Enter the following information in each field and tap "Connect".
    ・Username or email address: email address
    ・Domain name             : trustlogin.com
    Win42.png

  3. The TrustLogin login screen will appear. Log in.
    win10.png win11.png

  4. Authentication will begin. This may take some time, so please wait.
    Win43.png

  5. Once authentication is complete, activation will begin. Please wait.
    Win44.png
  6. When this screen appears, the certificate has been installed successfully.
    Tap "Finish".
    Win45.png
  7. The screen below will appear.
    The status in the upper right will change to "Active", and you can check the certificate information from the "Certificate" tab.
    Win46.png

    This completes the certificate installation process.

Step 3: How to Log In as a User Subject to Device Restrictions [Windows]

  1. In the TrustLogin login form, enter your Company ID and email address.
  2. The "Select a Certificate" dialog will appear. Select the installed client certificate and click "OK".
    Note: If multiple certificates are displayed, select the certificate whose subject is your own email address and whose issuer is "TrustLogin Client Authentication CA 2022".

    cl2-7.png

  3. Once you select the correct certificate, the password entry screen will appear. Please log in as usual.

    Note: If you do not select the correct certificate, the error message "This client certificate is not permitted by the administrator." will be displayed. If you selected the wrong certificate, you will need to restart your browser.

    Note: When using client authentication together with SAML authentication, whether single sign-on is possible outside the browser (e.g., in a mobile app) depends on the specifications of the app.

Supplement 1: How to Uninstall Secure Authentication Suite [Windows]

  1. Right-click the running Secure Authentication Suite app icon in the taskbar and exit the app.

  2. Open "Add or Remove Programs" from the Windows menu.


    After entering "secure" in the filter field, "Secure Authentication Suite" will appear. Click the "..." (ellipsis) and run the uninstall.

  3. After completing step 2, delete the two folders starting with "Sixscape" located under the "C:\Users\[username]\AppData\Local" folder.


    This completes the uninstallation process.

Supplement 2: How to Delete a Certificate [Windows]

  1. Open the Settings screen from the Windows menu.

  2. Enter "Internet Options" in the search box, then click "Internet Options" as it appears in the dropdown.

  3. The Properties screen will open. Select the "Content" tab at the top, then click the "Certificates" button.

  4. Select the target certificate from the certificate store, then click the Delete button.


    A confirmation dialog will appear. Click "Yes".


    This completes the certificate deletion process.