|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on configuring custom attributes, see here |
||
|
SP-side Settings |
〇 |
Configured by the administrator |
|
Request the SP to configure |
||
|
Provisioning |
Supports provisioning via API (account management possible in TrustLogin) |
|
|
Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified Devices |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
※ |
iOS - TrustLogin Mobile App Internal Browser |
|
|
ー |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
※ |
Android - TrustLogin Mobile App Internal Browser |
|
|
ー |
Android - Native App |
|
Note: Depends on the compatibility of the server on which Zabbix is installed
TrustLogin Admin Page Settings
-
Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Add App" button in the upper right of the screen.
- Search on the "Add Enterprise App" screen and select "Zabbix (SAML)".
-
Note the values of "Identity Provider URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
-
Enter your "Zabbix" login URL into "Service ACS URL" under "Service Provider Settings".
Example: https://example.com/zabbix/ui, http://another.example.com/zabbix, etc.
- Click the "Register" button to save the settings.
Zabbix Settings
- Log in with an administrator account and open "Administration > Authentication".
- In the "SAML settings" section, configure as follows and click "Update".
Enable SAML authentication Check the box IdP entity ID The "Issuer/Entity ID" you noted from TrustLogin SSO service URL The "Identity Provider URL" you noted from TrustLogin usrEmail SP entity ID zabbix Case-sensitive login Check the box
-
Download the certificate you noted from TrustLogin as idp.crt into the ui/conf/certs folder, and run the following to set permissions to 644.
chmod 644 idp.crt
TrustLogin User Settings
① When a user adds it from My Page
- Click the "Add App" button on "My Page".
- Select "Zabbix (SAML)" on the "Add App" screen and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter it and click the "Register" button.
② When an administrator adds members
- Search for and click the "Zabbix (SAML)" app in the "Admin Page > App" menu.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.