|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on configuring custom attributes, see here |
||
|
SP-side Configuration |
〇 |
Configured by the administrator |
|
Request the SP to configure the settings |
||
|
Provisioning |
Supports provisioning via API (account management possible in TrustLogin) |
|
|
Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified Operation Status by Device |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App Internal Browser |
|
|
ー |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App Internal Browser |
|
|
ー |
Android - Native App |
|
Preparation
- Log in to HRMOS Expense, open "Users > Master", and open the personal information screen of the user who will use single sign-on.
- Set your TrustLogin email address in "SSO ID" and click the "Register" button to save.
TrustLogin Admin Page Settings
-
Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- On the "Corporate App Registration" screen, search and select "HRMOS Expense (SAML)".
- Download the metadata using the "Download Metadata" button under "Identity Provider Information".
At this point, move on to the settings on the HRMOS Expense side.
Do not click the "Register" button; open HRMOS Expense in a separate window.
HRMOS Expense Settings
- Open "Admin > SAML Authentication".
- Click the "Export Metadata" button to obtain the metadata.
Use the "Import Metadata" button to import the metadata downloaded from TrustLogin.
- Confirm that values have been automatically inserted into the "SSO URL" and "Certificate" fields of the IdP settings, then click the "Register" button to save.
Return to the TrustLogin Admin Page again.
TrustLogin Admin Page Settings (Continued)
- Using the "Select Metadata" button under "Service Provider Settings", upload the metadata obtained from HRMOS Expense.
- Click the "Register" button to save.
TrustLogin User Settings
① When a user adds the app via My Page
- On "My Page", click the "Add App" button.
- On the "App Registration" screen, select "HRMOS Expense (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
② When an administrator adds a member
- In the "Admin Page > Apps" menu, search for and click the "HRMOS Expense (SAML)" app.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.