How to Configure SAML Authentication for GMO Sign Legal DX

Item

Details

Prior Confirmation

  • Prior configuration on GMO Sign Legal DX is required.

  • You need to create an account on GMO Sign Legal DX using the same email address as TrustLogin.

  • For the latest configuration steps, please refer to the manual provided by GMO Sign Legal DX.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Corporate App" screen, search and select "GMO Sign Legal DX (SAML)".
    02.png

  3. Note the value of "Identity Provider URL" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
    03.png

  4. Convert the extension of the downloaded certificate file from ".txt" to ".crt".

Now switch to the configuration on the GMO Sign Legal DX side. Please open GMO Sign Legal DX in a separate window.

GMO Sign Legal DX Settings

  1. Log in with an administrator account, and open "Company Settings" from the menu in the upper right.
    04.png

  2. Click the "Edit" button for "SAML Authentication" and configure each item as follows.
    Save by clicking the "Register" button.
    HTTP-Redirect Host

    The "Identity Provider URL" obtained from TrustLogin

    Public Key Certificate

    Upload the "Certificate" obtained from TrustLogin (converted to a crt file)


    05.png
    06.png

  3. Click "Yes".
    07.png

  4. Download the metadata from "Download Metadata".
    08.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Under "Service Provider Settings", use "Select Metadata" to upload the metadata downloaded from GMO Sign Legal DX.
    09.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "GMO Sign Legal DX (SAML)", and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds Members

  1. In the "Admin Page > App" menu, search for and click the "GMO Sign Legal DX (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for GMO Sign Legal DX

Item

Details

Prior Confirmation

  • Prior configuration on GMO Sign Legal DX is required.

  • You need to create an account on GMO Sign Legal DX using the same email address as TrustLogin.

  • For the latest configuration steps, please refer to the manual provided by GMO Sign Legal DX.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Corporate App" screen, search and select "GMO Sign Legal DX (SAML)".
    02.png

  3. Note the value of "Identity Provider URL" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
    03.png

  4. Convert the extension of the downloaded certificate file from ".txt" to ".crt".

Now switch to the configuration on the GMO Sign Legal DX side. Please open GMO Sign Legal DX in a separate window.

GMO Sign Legal DX Settings

  1. Log in with an administrator account, and open "Company Settings" from the menu in the upper right.
    04.png

  2. Click the "Edit" button for "SAML Authentication" and configure each item as follows.
    Save by clicking the "Register" button.
    HTTP-Redirect Host

    The "Identity Provider URL" obtained from TrustLogin

    Public Key Certificate

    Upload the "Certificate" obtained from TrustLogin (converted to a crt file)


    05.png
    06.png

  3. Click "Yes".
    07.png

  4. Download the metadata from "Download Metadata".
    08.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Under "Service Provider Settings", use "Select Metadata" to upload the metadata downloaded from GMO Sign Legal DX.
    09.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "GMO Sign Legal DX (SAML)", and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds Members

  1. In the "Admin Page > App" menu, search for and click the "GMO Sign Legal DX (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.