This page introduces the procedure, in an Android environment,
for requesting and installing the certificate used by the device certificate feature.
Step 1: Request a Device Certificate [Android]
Step 2: Install the Device Certificate [Android]
Supplement 1: How to Uninstall Secure Authentication Suite [Android]
Supplement 2: How to Delete a Certificate [Android]
For setup instructions on other operating systems, please refer to here.
For troubleshooting, please refer to here.
Step 1: Request a Device Certificate [Android]
Install the certificate import tool
(Secure Authentication Suite, provided by Sixscape) required to request a device certificate,
and then request the certificate.
Steps
- Go to the Google Play Store, search for "sixscape", and
install the "Secure Authentication Suite" app.
- Launch the "Secure Authentication Suite" app.
A form requesting login information will appear. Enter the following information in each field and tap "Connect".
・Username or email address:email address
・Domain name :trustlogin.com
- The TrustLogin login screen will appear. Log in.
- Authentication will begin. This may take some time, so please wait.
- Once authentication is complete, you will be taken to this screen.
Tap "Strong Device Authentication".
- You will be taken to the screen below. Tap "Start".
- The request will be sent, and you will be taken to the screen below.
Tap "Confirm Approval".
- You will be taken to the screen below.
If "Pending" is displayed in the upper right, the certificate request was successful.
This completes the Step 1 procedure. Please exit the app.
Actions by the Administrator
Based on the operation in Step 1, the administrator will approve or deny the request. Please wait.
Once the request is approved, TrustLogin will send an email
with the subject "[GMO TrustLogin] Your Device Certificate Is Ready to Be Obtained".
If you receive this email, please proceed to the next step.
Note: Please contact your administrator regarding the status after making a request.
Step 2: Install the Device Certificate [Android]
After requesting the certificate, these are the steps to follow once you have received
the "[GMO TrustLogin] Your Device Certificate Is Ready to Be Obtained" email.
Steps
- Launch the "Secure Authentication Suite" app, and
tap "Strong Device Authentication".
- If the status shown in the upper right is "pending", tap "Verify".
Note: If the status is "Approved", please skip ahead to Step 6.
- A form requesting login information will appear.
Confirm that the following information is entered in each field, then tap "Connect".
・Username or email address:email address
・Domain name :trustlogin.com
- The TrustLogin login screen will appear. Log in.
- Authentication will begin. This may take some time, so please wait.
- The screen below will appear. Once the status becomes "Approved",
tap "Enable".
- A loading screen will appear and activation will begin.
This may take some time, so please wait.
- The certificate type selection screen will appear.
Select "VPN and app user certificate" and tap "OK".
- Specify a name for the certificate.
If you have no particular preference, simply proceed by tapping "OK".
- When this screen appears, the certificate has been installed successfully.
Tap "Done".
- The screen below will appear.
The status in the upper right will change to "Active", and you can check the certificate information from the "Certificate" tab.
This completes the certificate installation process.
Step 3: How to Log In as a User Subject to Device Restrictions [Android]
- In the TrustLogin login form, enter your Company ID and email address.
- The "Select a Certificate" dialog will appear. Select the installed client certificate.
Note: If multiple certificates are displayed, please select the certificate whose "CN" value is your own email address.
-
Once you select the correct certificate, the password entry screen will appear. Please log in as usual.
Note: If you do not select the correct certificate, the error message "This client certificate is not permitted by the administrator." will be displayed. If you selected the wrong certificate, you will need to restart your browser.
Note: When using client authentication together with SAML authentication, whether single sign-on is possible outside the browser (e.g., in a mobile app) depends on the specifications of the app.
Supplement 1: How to Uninstall Secure Authentication Suite [Android]
Delete the app from Settings or the Play Store.
From the Play Store: tap "Uninstall".
From Settings: tap "Secure Authentication Suite", then tap "Uninstall".
Once you complete either method, the uninstallation is complete.
Supplement 2: How to Delete a Certificate [Android]
- Open the Settings screen and tap, in order,
"Security & Privacy" > "More security & privacy" >
"Encryption & credentials" > "User credentials".
Note: This may vary depending on your device version. - From the "User credentials" screen, tap the certificate you want to delete, then tap Uninstall.
This completes the certificate deletion process.