How to Configure SAML Authentication for WordPress

Item

Details

Prerequisites

  • Prior configuration in WordPress is required.

  • You need to create an account in WordPress using the same email address as your TrustLogin account.

  • This guide has been verified using the free version of the "SAML Single Sign On – SSO Login" plugin.
  • For the latest configuration steps, please refer to the manual provided by WordPress.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verification Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Note: Depends on the support status of the server where WordPress is installed

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "WordPress (SAML)".
    02.png

  3. Note down the values for "IdP URL" and "Issuer / Entity ID" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.
    03.png

Now let's move on to the configuration on the WordPress side. Please open WordPress in a separate window.

WordPress Configuration

  1. Log in with an administrator account and open "Plugins > Add New".
    04.png

  2. Search for "SAML Single Sign On," click "Install Now," and run the installation.
    05.png

  3. Click "Activate".
    06.png

  4. Click "Configure Your IDP Now".
    07.png

  5. Configure each field under "Configure Service Provider" in "Service Provider Setup" as follows, and save by clicking "SAVE".
    Identity Provider Name

    Any name of your choosing, such as "TrustLogin"

    IdP Entity ID or Issuer The "Issuer / Entity ID" obtained from TrustLogin
    SAML Login URL The "IdP URL" obtained from TrustLogin
    X.509 Certificate The contents of the "Certificate" obtained from TrustLogin

    08.png
    09.png

  6. Open "Service Provider Metadata" and note down the values for "SP-EntityID / Issuer" and "ACS (AssertionConsumerService) URL".
    10.png

Now return to the TrustLogin configuration.

TrustLogin Admin Page Configuration (Continued)

  1. Configure each field under "Service Provider Settings" as follows.
    Entity ID The "SP-EntityID / Issuer" obtained from WordPress
    ACS URL for the Service The "ACS (AssertionConsumerService) URL" obtained from WordPress

    11.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "WordPress (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

② When an Administrator Adds a Member

  1. In the "Admin Page > Apps" menu, search for the "WordPress (SAML)" app and click it.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for WordPress

Item

Details

Prerequisites

  • Prior configuration in WordPress is required.

  • You need to create an account in WordPress using the same email address as your TrustLogin account.

  • This guide has been verified using the free version of the "SAML Single Sign On – SSO Login" plugin.
  • For the latest configuration steps, please refer to the manual provided by WordPress.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verification Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Note: Depends on the support status of the server where WordPress is installed

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "WordPress (SAML)".
    02.png

  3. Note down the values for "IdP URL" and "Issuer / Entity ID" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.
    03.png

Now let's move on to the configuration on the WordPress side. Please open WordPress in a separate window.

WordPress Configuration

  1. Log in with an administrator account and open "Plugins > Add New".
    04.png

  2. Search for "SAML Single Sign On," click "Install Now," and run the installation.
    05.png

  3. Click "Activate".
    06.png

  4. Click "Configure Your IDP Now".
    07.png

  5. Configure each field under "Configure Service Provider" in "Service Provider Setup" as follows, and save by clicking "SAVE".
    Identity Provider Name

    Any name of your choosing, such as "TrustLogin"

    IdP Entity ID or Issuer The "Issuer / Entity ID" obtained from TrustLogin
    SAML Login URL The "IdP URL" obtained from TrustLogin
    X.509 Certificate The contents of the "Certificate" obtained from TrustLogin

    08.png
    09.png

  6. Open "Service Provider Metadata" and note down the values for "SP-EntityID / Issuer" and "ACS (AssertionConsumerService) URL".
    10.png

Now return to the TrustLogin configuration.

TrustLogin Admin Page Configuration (Continued)

  1. Configure each field under "Service Provider Settings" as follows.
    Entity ID The "SP-EntityID / Issuer" obtained from WordPress
    ACS URL for the Service The "ACS (AssertionConsumerService) URL" obtained from WordPress

    11.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "WordPress (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

② When an Administrator Adds a Member

  1. In the "Admin Page > Apps" menu, search for the "WordPress (SAML)" app and click it.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.