How to Configure SAML Authentication for Resily

Item

Details

Pre-check

  • Prior setup in Resily is required.

  • You must create an account in Resily using the same email address as in TrustLogin.

  • You must add the domain of the email address used to log in via SAML to Resily's "Allowed External Authentication Domains".
  • For the latest setup instructions, please refer to the manual provided by Resily.

Name ID

Email address

Custom Attribute Note: For instructions on configuring custom attributes, see here

SP-side Settings

Configured by the administrator

Request the SP to configure this setting

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Devices

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Corporate App Registration" screen, search and select "Resily (SAML)".
    Resily02.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".

    03.png

Now let's move on to the Resily settings. Please open Resily in a separate window.

Resily Settings

  1. Log in with an administrator account and select "Settings" from the icon in the lower left.
    Resily03.png

  2. Select "IP Restriction & Authentication Settings".
    Resily04.png

  3. Open the "Allowed External Authentication Domains" tab, click the + button, enter the domain of the email address used to log in via SAML, and click "Save". (Note: You can also add this later.)
    Resily05.png

  4. Open the "SAML Authentication" tab, click "Upload" under "Identity Provider Information", and upload the metadata downloaded from TrustLogin. Note down the values of "Audience" and "ACS URL" under "Service Provider Information".
    Resily06.png


    TrustLogin Admin Page Settings (Continued)

    1. Enter the following in "Service Provider Settings".
      Entity ID The "Audience" value noted from Resily
      ACS URL for the service The "ACS URL" value noted from Resily

      Resily07.png

    2. Click the "Register" button to save the settings.


      TrustLogin User Settings

      (1) When a user adds the app from My Page

      1. Click the "Add App" button on "My Page".
      2. On the "App Registration" screen, select "Resily (SAML)" and click the "Next" button in the upper right of the screen.
      3. If you want to change the "Display Name", enter it, then click the "Register" button.

      (2) When an administrator adds a member

      1. In the "Admin Page > Apps" menu, search for the "Resily (SAML)" app and click it.
      2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Resily

Item

Details

Pre-check

  • Prior setup in Resily is required.

  • You must create an account in Resily using the same email address as in TrustLogin.

  • You must add the domain of the email address used to log in via SAML to Resily's "Allowed External Authentication Domains".
  • For the latest setup instructions, please refer to the manual provided by Resily.

Name ID

Email address

Custom Attribute Note: For instructions on configuring custom attributes, see here

SP-side Settings

Configured by the administrator

Request the SP to configure this setting

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Devices

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Corporate App Registration" screen, search and select "Resily (SAML)".
    Resily02.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".

    03.png

Now let's move on to the Resily settings. Please open Resily in a separate window.

Resily Settings

  1. Log in with an administrator account and select "Settings" from the icon in the lower left.
    Resily03.png

  2. Select "IP Restriction & Authentication Settings".
    Resily04.png

  3. Open the "Allowed External Authentication Domains" tab, click the + button, enter the domain of the email address used to log in via SAML, and click "Save". (Note: You can also add this later.)
    Resily05.png

  4. Open the "SAML Authentication" tab, click "Upload" under "Identity Provider Information", and upload the metadata downloaded from TrustLogin. Note down the values of "Audience" and "ACS URL" under "Service Provider Information".
    Resily06.png


    TrustLogin Admin Page Settings (Continued)

    1. Enter the following in "Service Provider Settings".
      Entity ID The "Audience" value noted from Resily
      ACS URL for the service The "ACS URL" value noted from Resily

      Resily07.png

    2. Click the "Register" button to save the settings.


      TrustLogin User Settings

      (1) When a user adds the app from My Page

      1. Click the "Add App" button on "My Page".
      2. On the "App Registration" screen, select "Resily (SAML)" and click the "Next" button in the upper right of the screen.
      3. If you want to change the "Display Name", enter it, then click the "Register" button.

      (2) When an administrator adds a member

      1. In the "Admin Page > Apps" menu, search for the "Resily (SAML)" app and click it.
      2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.