|
Item |
Description |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure custom attributes, see here |
||
|
SP-Side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
Supports provisioning via API (account management possible in TrustLogin) |
|
|
Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Device Verification Status |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
※ |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
※ |
Android - Native App |
|
Note: Separate SAML configuration is required to use the native app. Please check the details here.
TrustLogin Admin Page Configuration
- Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Company App Registration" screen and select "ChatLuck (SAML)".
- Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.
- Enter the following into the blank fields for "Entity ID" and "ACS URL for the Service" under "Service Provider Settings":
Entity ID Enter the subdomain of ChatLuck's login URL
Example login URL: https://[subdomain].chatluck.net/cgi-bin/chatlk/chat.cgi
ACS URL for the Service Enter ChatLuck's URL in the following format
https://[subdomain].chatluck.net/cgi-bin/chatlk/saml.cgi
-
Click the "Register" button to save.
ChatLuck Configuration
- Log in with a system administrator account, and select "System Administrator Settings" from the "▼" button.
- Open "External Integration Settings > SAML Authentication Settings" and enter the following values for each item under "Browser Version":
SAML Authentication Select "Use" Allow Normal Login Please select according to your company's policy.
Note: If you select "Do not allow," login with ID and password will no longer be possible. We recommend selecting this only after confirming that SAML authentication succeeds.
Access URL for ChatLuck Enter ChatLuck's URL in the following format
https://[subdomain].chatluck.net/cgi-bin/chatlk
- Enter the following values for each item in "SAML Authentication Settings" and click "Change".
Access URL The "IdP URL" obtained from TrustLogin SP Entity ID The "Issuer/Entity ID" obtained from TrustLogin X.509 Certificate Upload the "Certificate" obtained from TrustLogin
TrustLogin User Configuration
① When a User Adds the App from My Page
- Click the "Add App" button on "My Page".
- Select "ChatLuck (SAML)" on the "App Registration" screen, and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name," enter it, then click the "Register" button.
② When an Administrator Adds Members
- Search for and click the "ChatLuck (SAML)" app in the "Admin Page > Apps" menu.
- Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.