Foxit SAML JIT Setup Guide

Item

Details

Pre-check

  • Prior configuration in Foxit is required.

  • Domain ownership and verification are required in order to apply SAML.

  • Please refer to the manual provided by Foxit for the latest configuration steps.

  • When logging in to Admin Console via JIT, you will not be able to access it on your first login. Login becomes possible after an administrator grants permissions in Admin Console.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the administrator

Request SP to configure

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Note: A separate SAML helper app must be registered. See here for details.

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Foxit (SAML)".
    02.png

  3. Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
    03.png

Now, switch to configuring Foxit.
Do not click the "Register" button yet — open Foxit's Admin Console in a separate window.

Foxit Settings

  1. Log in to Admin Console, open "Settings > Directory Settings > Domain", and add a domain. Follow the displayed steps to verify the domain.
    04.png

  2. Open "Directory Settings > Directory" and click the "Add Directory" button.
    05.png

  3. Set any directory name you like and click "Create and Continue".
    06.png

  4. Configure each SAML setting item as follows and save by clicking the "Save" button.
    SP Entity ID Copy and note down the value
    SP Assertion Consumer Service URL Copy and note down the value
    IdP Entity ID The "Issuer/Entity ID" obtained from TrustLogin
    IdP SSO URL The "IdP URL" obtained from TrustLogin
    x509 Public Certificate The contents of the "Certificate" obtained from TrustLogin
    Connector Selection Select "Other"

    07.png

  5. Add the domain by selecting the verified domain under "Add Domain".
    08.png

Now return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "SP Entity ID" obtained from Foxit
    ACS URL to Service The "SP Assertion Consumer Service URL" obtained from Foxit

    13.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Foxit (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

② When an administrator adds members

  1. Search for and click the "Foxit (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Log In to Foxit

If you log in using the "Foxit (SAML)" app created in the steps above, the connection will succeed, but you will not be able to navigate to Admin Console or the product pages. For this reason, please log in using the steps below.

  • Logging in to Admin Console
    Register the helper app "[SAML Helper] Foxit (Admin Console)" and log in from there.
    Note: This app can only be used in a PC browser.
    Note: If you use the TrustLogin mobile app, you will need to manually enter your email address during SSO login.
    09.png

  • Logging in to the product page from a PC browser
    Access the login page for each product page to open the sign-in page.
    If you are already logged in to TrustLogin, you will be taken directly to the product page.
    10.png

    If you are not logged in to TrustLogin, you will be redirected to the Foxit login screen, so click "SSO Login". After entering your email address and clicking "Sign In", you will be redirected to the TrustLogin login screen. Login will be complete after authentication.
    11.png
    12.png


  • Logging in via mobile app or desktop app
    Open the user information icon.
    (As an example, this shows the PDF Editor mobile app screen. Login is possible using almost the same steps in other apps as well.)
    mobile1.png

    Click "SSO Login", enter your email address, and click "Sign In".
    You will be redirected to the TrustLogin login screen. Login will be complete after authentication.
    mobile2.png mobile3.png

Foxit SAML JIT Setup Guide

Item

Details

Pre-check

  • Prior configuration in Foxit is required.

  • Domain ownership and verification are required in order to apply SAML.

  • Please refer to the manual provided by Foxit for the latest configuration steps.

  • When logging in to Admin Console via JIT, you will not be able to access it on your first login. Login becomes possible after an administrator grants permissions in Admin Console.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the administrator

Request SP to configure

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Note: A separate SAML helper app must be registered. See here for details.

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Foxit (SAML)".
    02.png

  3. Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
    03.png

Now, switch to configuring Foxit.
Do not click the "Register" button yet — open Foxit's Admin Console in a separate window.

Foxit Settings

  1. Log in to Admin Console, open "Settings > Directory Settings > Domain", and add a domain. Follow the displayed steps to verify the domain.
    04.png

  2. Open "Directory Settings > Directory" and click the "Add Directory" button.
    05.png

  3. Set any directory name you like and click "Create and Continue".
    06.png

  4. Configure each SAML setting item as follows and save by clicking the "Save" button.
    SP Entity ID Copy and note down the value
    SP Assertion Consumer Service URL Copy and note down the value
    IdP Entity ID The "Issuer/Entity ID" obtained from TrustLogin
    IdP SSO URL The "IdP URL" obtained from TrustLogin
    x509 Public Certificate The contents of the "Certificate" obtained from TrustLogin
    Connector Selection Select "Other"

    07.png

  5. Add the domain by selecting the verified domain under "Add Domain".
    08.png

Now return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "SP Entity ID" obtained from Foxit
    ACS URL to Service The "SP Assertion Consumer Service URL" obtained from Foxit

    13.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Foxit (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

② When an administrator adds members

  1. Search for and click the "Foxit (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Log In to Foxit

If you log in using the "Foxit (SAML)" app created in the steps above, the connection will succeed, but you will not be able to navigate to Admin Console or the product pages. For this reason, please log in using the steps below.

  • Logging in to Admin Console
    Register the helper app "[SAML Helper] Foxit (Admin Console)" and log in from there.
    Note: This app can only be used in a PC browser.
    Note: If you use the TrustLogin mobile app, you will need to manually enter your email address during SSO login.
    09.png

  • Logging in to the product page from a PC browser
    Access the login page for each product page to open the sign-in page.
    If you are already logged in to TrustLogin, you will be taken directly to the product page.
    10.png

    If you are not logged in to TrustLogin, you will be redirected to the Foxit login screen, so click "SSO Login". After entering your email address and clicking "Sign In", you will be redirected to the TrustLogin login screen. Login will be complete after authentication.
    11.png
    12.png


  • Logging in via mobile app or desktop app
    Open the user information icon.
    (As an example, this shows the PDF Editor mobile app screen. Login is possible using almost the same steps in other apps as well.)
    mobile1.png

    Click "SSO Login", enter your email address, and click "Sign In".
    You will be redirected to the TrustLogin login screen. Login will be complete after authentication.
    mobile2.png mobile3.png