How to Configure SAML Authentication for Dojo Navi

Item

Details

Prerequisites

  • Prior configuration is required in Dojo Navi.

  • The "Account" in the Dojo Navi user information must match the email address used in TrustLogin.

  • For the latest configuration steps, please refer to the manual provided by Dojo Navi.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created individually in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "Dojo Navi (SAML)".
    02.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png

Now, switch to the configuration on the Dojo Navi side.
Do not click the "Register" button yet — open Dojo Navi in a separate window.

Dojo Navi Configuration

  1. Open "Preferences > SSO Settings" in the left-hand menu and configure each item as follows.
    Finally, click the "Save" button to save the settings.
    Entity ID Copy it using "Copy" and keep a record of the value
    ACS URL Copy it using "Copy" and keep a record of the value
    Logout URL Copy it using "Copy" and keep a record of the value
    Metadata Registration Upload the "metadata" obtained from TrustLogin
    SSO Detailed Settings You can restrict the login method for Dojo Navi to SSO only.
    Leave this unchecked here, and enable it only after all SSO settings have been completed if you wish to enforce this restriction.

    04.png

  2. Open "Users > User List" and set the "Account" field for the target user to the same email address used in TrustLogin.
    05.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "Entity ID" obtained from Dojo Navi
    ACS URL for the Service The "ACS URL" obtained from Dojo Navi
    Logout URL The "Logout URL" obtained from Dojo Navi Note:
    Note: Single logout is planned as a future feature, but is not currently implemented and does not work

    06.png

  2. Click the "Register" button to save.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. Select "Dojo Navi (SAML)" on the "Register App" screen and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. Search for and click the "Dojo Navi (SAML)" app in the "Admin Page > Apps" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Dojo Navi

Item

Details

Prerequisites

  • Prior configuration is required in Dojo Navi.

  • The "Account" in the Dojo Navi user information must match the email address used in TrustLogin.

  • For the latest configuration steps, please refer to the manual provided by Dojo Navi.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created individually in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "Dojo Navi (SAML)".
    02.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".
    03.png

Now, switch to the configuration on the Dojo Navi side.
Do not click the "Register" button yet — open Dojo Navi in a separate window.

Dojo Navi Configuration

  1. Open "Preferences > SSO Settings" in the left-hand menu and configure each item as follows.
    Finally, click the "Save" button to save the settings.
    Entity ID Copy it using "Copy" and keep a record of the value
    ACS URL Copy it using "Copy" and keep a record of the value
    Logout URL Copy it using "Copy" and keep a record of the value
    Metadata Registration Upload the "metadata" obtained from TrustLogin
    SSO Detailed Settings You can restrict the login method for Dojo Navi to SSO only.
    Leave this unchecked here, and enable it only after all SSO settings have been completed if you wish to enforce this restriction.

    04.png

  2. Open "Users > User List" and set the "Account" field for the target user to the same email address used in TrustLogin.
    05.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "Entity ID" obtained from Dojo Navi
    ACS URL for the Service The "ACS URL" obtained from Dojo Navi
    Logout URL The "Logout URL" obtained from Dojo Navi Note:
    Note: Single logout is planned as a future feature, but is not currently implemented and does not work

    06.png

  2. Click the "Register" button to save.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. Select "Dojo Navi (SAML)" on the "Register App" screen and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. Search for and click the "Dojo Navi (SAML)" app in the "Admin Page > Apps" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.