How to Configure SAML Authentication for ChatLuck (Cloud Edition)

Item

Description

Prerequisites

  • Prior configuration is required in ChatLuck.

  • You must set the "Login ID" in ChatLuck to the same email address used in TrustLogin.

  • For the latest configuration steps, please refer to the manual provided by ChatLuck.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-Side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Verification Status

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Note: Separate SAML configuration is required to use the native app. Please check the details here.

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Company App Registration" screen and select "ChatLuck (SAML)".
    ChatLuck01.png

  3. Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.
    03__1_.png

  4. Enter the following into the blank fields for "Entity ID" and "ACS URL for the Service" under "Service Provider Settings":
    Entity ID

    Enter the subdomain of ChatLuck's login URL

    Example login URL: https://[subdomain].chatluck.net/cgi-bin/chatlk/chat.cgi

    ACS URL for the Service

    Enter ChatLuck's URL in the following format

    https://[subdomain].chatluck.net/cgi-bin/chatlk/saml.cgi


    ChatLuck.png

  5. Click the "Register" button to save.

ChatLuck Configuration

  1. Log in with a system administrator account, and select "System Administrator Settings" from the "▼" button.
    ChatLuck03.png

  2. Open "External Integration Settings > SAML Authentication Settings" and enter the following values for each item under "Browser Version":
    ChatLuck04.png
    SAML Authentication Select "Use"
    Allow Normal Login

    Please select according to your company's policy.

    Note: If you select "Do not allow," login with ID and password will no longer be possible. We recommend selecting this only after confirming that SAML authentication succeeds.

    Access URL for ChatLuck

    Enter ChatLuck's URL in the following format

    https://[subdomain].chatluck.net/cgi-bin/chatlk 



  3. Enter the following values for each item in "SAML Authentication Settings" and click "Change".
    ChatLuck05.png
    Access URL The "IdP URL" obtained from TrustLogin
    SP Entity ID The "Issuer/Entity ID" obtained from TrustLogin
    X.509 Certificate

    Upload the "Certificate" obtained from TrustLogin


    TrustLogin User Configuration

    ① When a User Adds the App from My Page

    1. Click the "Add App" button on "My Page".
    2. Select "ChatLuck (SAML)" on the "App Registration" screen, and click the "Next" button in the upper right of the screen.
    3. If you want to change the "Display Name," enter it, then click the "Register" button.

    ② When an Administrator Adds Members

    1. Search for and click the "ChatLuck (SAML)" app in the "Admin Page > Apps" menu.
    2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for ChatLuck (Cloud Edition)

Item

Description

Prerequisites

  • Prior configuration is required in ChatLuck.

  • You must set the "Login ID" in ChatLuck to the same email address used in TrustLogin.

  • For the latest configuration steps, please refer to the manual provided by ChatLuck.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-Side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Verification Status

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Note: Separate SAML configuration is required to use the native app. Please check the details here.

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Company App Registration" screen and select "ChatLuck (SAML)".
    ChatLuck01.png

  3. Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.
    03__1_.png

  4. Enter the following into the blank fields for "Entity ID" and "ACS URL for the Service" under "Service Provider Settings":
    Entity ID

    Enter the subdomain of ChatLuck's login URL

    Example login URL: https://[subdomain].chatluck.net/cgi-bin/chatlk/chat.cgi

    ACS URL for the Service

    Enter ChatLuck's URL in the following format

    https://[subdomain].chatluck.net/cgi-bin/chatlk/saml.cgi


    ChatLuck.png

  5. Click the "Register" button to save.

ChatLuck Configuration

  1. Log in with a system administrator account, and select "System Administrator Settings" from the "▼" button.
    ChatLuck03.png

  2. Open "External Integration Settings > SAML Authentication Settings" and enter the following values for each item under "Browser Version":
    ChatLuck04.png
    SAML Authentication Select "Use"
    Allow Normal Login

    Please select according to your company's policy.

    Note: If you select "Do not allow," login with ID and password will no longer be possible. We recommend selecting this only after confirming that SAML authentication succeeds.

    Access URL for ChatLuck

    Enter ChatLuck's URL in the following format

    https://[subdomain].chatluck.net/cgi-bin/chatlk 



  3. Enter the following values for each item in "SAML Authentication Settings" and click "Change".
    ChatLuck05.png
    Access URL The "IdP URL" obtained from TrustLogin
    SP Entity ID The "Issuer/Entity ID" obtained from TrustLogin
    X.509 Certificate

    Upload the "Certificate" obtained from TrustLogin


    TrustLogin User Configuration

    ① When a User Adds the App from My Page

    1. Click the "Add App" button on "My Page".
    2. Select "ChatLuck (SAML)" on the "App Registration" screen, and click the "Next" button in the upper right of the screen.
    3. If you want to change the "Display Name," enter it, then click the "Register" button.

    ② When an Administrator Adds Members

    1. Search for and click the "ChatLuck (SAML)" app in the "Admin Page > Apps" menu.
    2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.