How to Configure SAML Authentication for ROOMLEAD

Item

Details

Prerequisites

  • Prior configuration on the ROOMLEAD side is required.

  • The ROOMLEAD user's email address must match the TrustLogin email address.

  • For the latest configuration procedures, please refer to the manual provided by ROOMLEAD.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports API-based provisioning (account management possible from TrustLogin)

Supports SAML JIT provisioning (account management possible from TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device-specific Verification Status

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-app Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-app Browser

Android - Native App

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Enterprise App Registration" screen and select "ROOMLEAD (SAML)".
    02.png

  3. Obtain the metadata from "Download Metadata" under Identity Provider Information, and save the app configuration by clicking the "Register" button. Send it to your ROOMLEAD representative and request that they configure SAML.
    03.png

  4. Once you receive the configuration information from ROOMLEAD, resume the configuration.
    (On the Admin Page apps screen, search for the app by name → open the relevant app's detail screen → change the SAML app settings)

    Open the metadata sent by ROOMLEAD
    in a text editor, extract the following information, and enter it into "Service Provider Settings".
    Entity ID Search the metadata for "entityID" and use the 〜 portion of "entityID="〜""
    ACS URL for Service Search the metadata for "AssertionConsumerService" and use the 〜 portion of the subsequent "Location="〜""
    Note: "AssertionConsumerService" appears twice in the metadata, but the value is the same in both places, so either one may be used

    04__1_.png

    05.png

  5. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "App Registration" screen, select "ROOMLEAD (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds members

  1. Search for and click the "ROOMLEAD (SAML)" app in the "Admin Page > Apps" menu.
  2. Click "Add Member", select the users to add from the member list, and click the "Register" button to add them.

ROOMLEAD SSO Method

  1. Access the ROOMLEAD login URL directly in your browser, or click "ROOMLEAD (SAML)" from TrustLogin's My Page or the browser extension.

  2. Click "Go to SSO Authentication Screen".
    06.png

  3. You will be redirected and SSO will be completed.
    If you accessed the ROOMLEAD login URL directly in your browser and are not logged in to TrustLogin, you will be redirected to the TrustLogin authentication screen. SSO will be completed after authentication.

How to Configure SAML Authentication for ROOMLEAD

Item

Details

Prerequisites

  • Prior configuration on the ROOMLEAD side is required.

  • The ROOMLEAD user's email address must match the TrustLogin email address.

  • For the latest configuration procedures, please refer to the manual provided by ROOMLEAD.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports API-based provisioning (account management possible from TrustLogin)

Supports SAML JIT provisioning (account management possible from TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device-specific Verification Status

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-app Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-app Browser

Android - Native App

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Enterprise App Registration" screen and select "ROOMLEAD (SAML)".
    02.png

  3. Obtain the metadata from "Download Metadata" under Identity Provider Information, and save the app configuration by clicking the "Register" button. Send it to your ROOMLEAD representative and request that they configure SAML.
    03.png

  4. Once you receive the configuration information from ROOMLEAD, resume the configuration.
    (On the Admin Page apps screen, search for the app by name → open the relevant app's detail screen → change the SAML app settings)

    Open the metadata sent by ROOMLEAD
    in a text editor, extract the following information, and enter it into "Service Provider Settings".
    Entity ID Search the metadata for "entityID" and use the 〜 portion of "entityID="〜""
    ACS URL for Service Search the metadata for "AssertionConsumerService" and use the 〜 portion of the subsequent "Location="〜""
    Note: "AssertionConsumerService" appears twice in the metadata, but the value is the same in both places, so either one may be used

    04__1_.png

    05.png

  5. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "App Registration" screen, select "ROOMLEAD (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds members

  1. Search for and click the "ROOMLEAD (SAML)" app in the "Admin Page > Apps" menu.
  2. Click "Add Member", select the users to add from the member list, and click the "Register" button to add them.

ROOMLEAD SSO Method

  1. Access the ROOMLEAD login URL directly in your browser, or click "ROOMLEAD (SAML)" from TrustLogin's My Page or the browser extension.

  2. Click "Go to SSO Authentication Screen".
    06.png

  3. You will be redirected and SSO will be completed.
    If you accessed the ROOMLEAD login URL directly in your browser and are not logged in to TrustLogin, you will be redirected to the TrustLogin authentication screen. SSO will be completed after authentication.