How to Configure SAML Authentication for GigaCC

Item

Details

Prerequisites

  • Prior configuration in GigaCC is required.

  • For the latest configuration steps, please refer to the manual provided by GigaCC.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, click here

SP-side settings

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verification Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

Preparation

Add a Custom Attribute to User Information

Add the GigaCC "Login ID" information to the TrustLogin member information as a custom attribute.
Note: This is not necessary if the "GigaCC Login ID" matches the "email address registered in TrustLogin." Proceed to the next step.

[GigaCC Account Information Screen]
userID.png

[TrustLogin Custom Attribute Configuration Example]
userID2.png

Please refer to the following pages for instructions on how to configure custom attributes. The attribute name for the custom attribute can be anything you choose.

Custom Attribute Configuration (Individual Registration)

Custom Attribute Configuration (Bulk Registration)

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Enterprise App Registration" screen, search and select "GigaCC (SAML)."
    02.png

  3. Note down the value of the "IdP URL" under "Identity Provider Information," and download the certificate from "Get Certificate."
    03.png

Now switch to configuring the GigaCC side.
Please open the GigaCC administrator screen in a separate window.

GigaCC Configuration

  1. Log in to the GigaCC administrator screen and open "Volume Management > Single Sign-On."
    04.png

  2. Configure each item under "General Settings" as shown below, and make a note of the values for the "Login URL for User Screen" and "Service Provider Information." Finally, save by clicking the "Update" button.
    Single Sign-On Select "Use"
    SSO Endpoint The "IdP URL" obtained from TrustLogin
    URL to Redirect to After Logout from the User Screen https://portal.trustlogin.com/
    URL to Redirect to After Logout from the Administrator Screen https://portal.trustlogin.com/
    Identity Provider Certificate Upload the certificate obtained from TrustLogin
    IP Address Restriction (optional) Please configure this according to your operational requirements

    05.png

Return to the TrustLogin configuration screen again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure each item under "Service Provider Settings" as shown below.
    Login URL The "Login URL for User Screen" noted from GigaCC
    Entity ID The "Identifier for User Screen" noted from GigaCC
    Value for Name ID - If the GigaCC login ID and the TrustLogin email address are the same
     → Set "Member > email"

    - If the GigaCC login ID and the TrustLogin email address are different
     → Set "Custom Attribute > the custom attribute name you configured"
    ACS URL for the Service Set the "Response URL for User Screen" and "Response URL for Administrator Screen" obtained from GigaCC, respectively

    06.png

  2. Save the settings by clicking the "Register" button.

TrustLogin User Configuration

① When a User Adds the App from My Page

  1. On "My Page," click the "Add App" button.
  2. On the "App Registration" screen, select "GigaCC (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

② When an Administrator Adds Members

  1. In the "Admin Page > Apps" menu, search for and click the "GigaCC (SAML)" app.
  2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.

How to Access the GigaCC Administrator Screen

To log in to the GigaCC administrator screen, first log in via the "GigaCC (SAML)" app, then access the login URL for the administrator screen.

How to Configure SAML Authentication for GigaCC

Item

Details

Prerequisites

  • Prior configuration in GigaCC is required.

  • For the latest configuration steps, please refer to the manual provided by GigaCC.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, click here

SP-side settings

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verification Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

Preparation

Add a Custom Attribute to User Information

Add the GigaCC "Login ID" information to the TrustLogin member information as a custom attribute.
Note: This is not necessary if the "GigaCC Login ID" matches the "email address registered in TrustLogin." Proceed to the next step.

[GigaCC Account Information Screen]
userID.png

[TrustLogin Custom Attribute Configuration Example]
userID2.png

Please refer to the following pages for instructions on how to configure custom attributes. The attribute name for the custom attribute can be anything you choose.

Custom Attribute Configuration (Individual Registration)

Custom Attribute Configuration (Bulk Registration)

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Enterprise App Registration" screen, search and select "GigaCC (SAML)."
    02.png

  3. Note down the value of the "IdP URL" under "Identity Provider Information," and download the certificate from "Get Certificate."
    03.png

Now switch to configuring the GigaCC side.
Please open the GigaCC administrator screen in a separate window.

GigaCC Configuration

  1. Log in to the GigaCC administrator screen and open "Volume Management > Single Sign-On."
    04.png

  2. Configure each item under "General Settings" as shown below, and make a note of the values for the "Login URL for User Screen" and "Service Provider Information." Finally, save by clicking the "Update" button.
    Single Sign-On Select "Use"
    SSO Endpoint The "IdP URL" obtained from TrustLogin
    URL to Redirect to After Logout from the User Screen https://portal.trustlogin.com/
    URL to Redirect to After Logout from the Administrator Screen https://portal.trustlogin.com/
    Identity Provider Certificate Upload the certificate obtained from TrustLogin
    IP Address Restriction (optional) Please configure this according to your operational requirements

    05.png

Return to the TrustLogin configuration screen again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure each item under "Service Provider Settings" as shown below.
    Login URL The "Login URL for User Screen" noted from GigaCC
    Entity ID The "Identifier for User Screen" noted from GigaCC
    Value for Name ID - If the GigaCC login ID and the TrustLogin email address are the same
     → Set "Member > email"

    - If the GigaCC login ID and the TrustLogin email address are different
     → Set "Custom Attribute > the custom attribute name you configured"
    ACS URL for the Service Set the "Response URL for User Screen" and "Response URL for Administrator Screen" obtained from GigaCC, respectively

    06.png

  2. Save the settings by clicking the "Register" button.

TrustLogin User Configuration

① When a User Adds the App from My Page

  1. On "My Page," click the "Add App" button.
  2. On the "App Registration" screen, select "GigaCC (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

② When an Administrator Adds Members

  1. In the "Admin Page > Apps" menu, search for and click the "GigaCC (SAML)" app.
  2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.

How to Access the GigaCC Administrator Screen

To log in to the GigaCC administrator screen, first log in via the "GigaCC (SAML)" app, then access the login URL for the administrator screen.