How to Configure SAML Authentication for Dexeco

Item

Details

Prerequisites

  • Dexeco requires prior configuration.

  • You must create an account in Dexeco using the same email address as your TrustLogin account.

  • For the latest configuration steps, please refer to the manual provided by Dexeco.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, see here

SP-side configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed from TrustLogin)

Supports SAML JIT provisioning (accounts can be managed from TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified operation status by device

PC - Browser

PC - Desktop app

iOS - Standard browser (Safari)

iOS - TrustLogin mobile app internal browser

iOS - Native app

Android - Standard browser (Chrome)

Android - TrustLogin mobile app internal browser

Android - Native app

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. On the "Register Corporate App" screen, search and select "Dexeco (SAML)".
    Dexeco.png

  3. Note down the values of "IdP URL" and "Issuer / Entity ID" under "Identity Provider Information," then download the certificate using the "Get Certificate" button.03

    Now, switch to configuring the Dexeco side. Do not click the "Register" button yet — open Dexeco in a separate window.

Dexeco Configuration

  1. Log in to Dexeco, open "Organization Settings > SSO Settings", and configure each item as follows.
    Single Sign-On

    Check "Enable".

    Note: If you check "Allow login only via single sign-on," logging in with an email address will no longer be possible. We recommend leaving this unchecked when configuring SAML.

    Entity ID The "Issuer / Entity ID" obtained from TrustLogin
    Target URL The "IdP URL" obtained from TrustLogin
    IdP Certificate The contents of the "certificate" obtained from TrustLogin

    Dexeco03.png

  2. Note down the "Assertion Consumer Service URL", "Issuer", and "Login URL", then click "Save".
    Note: The "Login URL" is used for SP-Initiated SSO.
    Dexeco04.png

    Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "Issuer" obtained from Dexeco
    Service ACS URL The "Assertion Consumer Service URL" obtained from Dexeco

    Dexeco02.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Dexeco (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

② When an administrator adds members

  1. In the "Admin Page > Apps" menu, search for and click the "Dexeco (SAML)" app.
  2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Dexeco

Item

Details

Prerequisites

  • Dexeco requires prior configuration.

  • You must create an account in Dexeco using the same email address as your TrustLogin account.

  • For the latest configuration steps, please refer to the manual provided by Dexeco.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, see here

SP-side configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed from TrustLogin)

Supports SAML JIT provisioning (accounts can be managed from TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified operation status by device

PC - Browser

PC - Desktop app

iOS - Standard browser (Safari)

iOS - TrustLogin mobile app internal browser

iOS - Native app

Android - Standard browser (Chrome)

Android - TrustLogin mobile app internal browser

Android - Native app

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. On the "Register Corporate App" screen, search and select "Dexeco (SAML)".
    Dexeco.png

  3. Note down the values of "IdP URL" and "Issuer / Entity ID" under "Identity Provider Information," then download the certificate using the "Get Certificate" button.03

    Now, switch to configuring the Dexeco side. Do not click the "Register" button yet — open Dexeco in a separate window.

Dexeco Configuration

  1. Log in to Dexeco, open "Organization Settings > SSO Settings", and configure each item as follows.
    Single Sign-On

    Check "Enable".

    Note: If you check "Allow login only via single sign-on," logging in with an email address will no longer be possible. We recommend leaving this unchecked when configuring SAML.

    Entity ID The "Issuer / Entity ID" obtained from TrustLogin
    Target URL The "IdP URL" obtained from TrustLogin
    IdP Certificate The contents of the "certificate" obtained from TrustLogin

    Dexeco03.png

  2. Note down the "Assertion Consumer Service URL", "Issuer", and "Login URL", then click "Save".
    Note: The "Login URL" is used for SP-Initiated SSO.
    Dexeco04.png

    Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "Issuer" obtained from Dexeco
    Service ACS URL The "Assertion Consumer Service URL" obtained from Dexeco

    Dexeco02.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Dexeco (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

② When an administrator adds members

  1. In the "Admin Page > Apps" menu, search for and click the "Dexeco (SAML)" app.
  2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.