|
Item |
Details |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on configuring custom attributes, click here |
||
|
SP-side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
Supports provisioning via API (accounts can be managed in TrustLogin) |
|
|
Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created individually in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified Operation Status by Device |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
ー |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
ー |
Android - Native App |
|
TrustLogin Admin Page Configuration
- Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
- Search on the "Register Corporate App" screen and select "CloudLog (SAML)".
- Download the metadata from the "Download Metadata" button under "Identity Provider Information".
Now, switch to the configuration on the CloudLog side.
Do not click the "Register" button yet — open CloudLog in a separate window.
CloudLog Configuration
- Open "Admin > Basic Settings > Security Settings".
Configure each item as follows, then save by clicking the "Save" button.
External Authentication Select "SAML Authentication" Metadata XML Select the "metadata" obtained from TrustLogin
The subsequent IdP configuration fields will be entered automaticallySLO URL
Depending on your desired logout behavior from CloudLog, overwrite the automatically entered value as follows
[To also log out of TrustLogin]
https://portal.trustlogin.com/users/sign_in
[To redirect to the TrustLogin My Page]
https://portal.trustlogin.com/
[To redirect to the CloudLog login page]
Leave blank (TrustLogin will not be logged out)Sign-on URL This is not used in the TrustLogin-side configuration, but it will be the login URL used when signing in via SP-Initiated SSO, so obtain it if needed
Entity ID Copy the value using the copy icon on the right and keep a record of it ACS URL Copy the value using the copy icon on the right and keep a record of it
Return to the TrustLogin Admin Page again.
TrustLogin Admin Page Configuration (Continued)
- Configure the "Service Provider Settings" as follows.
Entity ID The "Entity ID" obtained from CloudLog ACS URL for the Service The "ACS URL" obtained from CloudLog
- Click the "Register" button to save.
TrustLogin User Configuration
① When a user adds the app from My Page
- Click the "Add App" button on "My Page".
- Select "CloudLog (SAML)" on the "Register App" screen and click the "Next" button at the top right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
② When an administrator adds a member
- Search for and click the "CloudLog (SAML)" app in the "Admin Page > Apps" menu.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.