How to Configure SAML Authentication for AppRemo (Mobile Version)

Item

Details

Prerequisites

  • Prior setup is required in AppRemo.

  • You must create an account under AppRemo's "Login ID" using the same email address as your TrustLogin account.

  • This manual has been verified for operation using AppRemo Cloud.
  • If SAML authentication fails, you can log in with an ID and password (administrators only) by accessing the AppRemo login URL with "?saml=false" appended to the end.
  • For the latest configuration steps, please refer to the manual provided by AppRemo.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-Side Configuration

Configured by the administrator

Request the SP to configure the settings

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verification Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

※SAML authentication itself is possible, but if you use it on a PC, we recommend configuring SAML separately. For configuration instructions, please see here.

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen, and select "AppRemo [Mobile] (SAML)".
    mob_Appremo1.png

  3. Note the value of "IdP URL" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
    03 (3).png


  4. Configure the following fields in "Service Provider Settings" and save by clicking the "Register" button.
    Entity ID

    Extract the FQDN of AppRemo and enter it

    Example: https://xxxx.appremo.jp/wf/ 

    Service ACS URL

    Extract the FQDN of AppRemo and enter it

    Example: https://xxxx.appremo.jp/wf/


    mob_Appremo3.png

    AppRemo Configuration

    1. Log in to AppRemo with an administrator account, and open "Admin Menu > System Settings > SAML Settings".
      Appremo.png

    2. Configure "SAML Settings" as follows and click the "Register" button.
      Enable SAML authentication Check the box

      https://AppRemo's FQDN/wfmob/authmob/saml

      The "IdP URL" obtained from TrustLogin
      https://portal.trustlogin.com/ 

      Change the file extension of the "Certificate" obtained from TrustLogin to .cer and upload it


      mob_Appremo2.png

      TrustLogin User Configuration

      ① When a User Adds the App via My Page

      1. On "My Page", click the "Add App" button.
      2. On the "Register App" screen, select "AppRemo [Mobile] (SAML)" and click the "Next" button in the upper right of the screen.
      3. If you want to change the "Display Name", enter it, and click the "Register" button.

      ② When an Administrator Adds Members

      1. In the "Admin Page > Apps" menu, search for the "AppRemo [Mobile] (SAML)" app and click it.
      2. Click "Add Member", select the users to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for AppRemo (Mobile Version)

Item

Details

Prerequisites

  • Prior setup is required in AppRemo.

  • You must create an account under AppRemo's "Login ID" using the same email address as your TrustLogin account.

  • This manual has been verified for operation using AppRemo Cloud.
  • If SAML authentication fails, you can log in with an ID and password (administrators only) by accessing the AppRemo login URL with "?saml=false" appended to the end.
  • For the latest configuration steps, please refer to the manual provided by AppRemo.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-Side Configuration

Configured by the administrator

Request the SP to configure the settings

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verification Status by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

※SAML authentication itself is possible, but if you use it on a PC, we recommend configuring SAML separately. For configuration instructions, please see here.

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen, and select "AppRemo [Mobile] (SAML)".
    mob_Appremo1.png

  3. Note the value of "IdP URL" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
    03 (3).png


  4. Configure the following fields in "Service Provider Settings" and save by clicking the "Register" button.
    Entity ID

    Extract the FQDN of AppRemo and enter it

    Example: https://xxxx.appremo.jp/wf/ 

    Service ACS URL

    Extract the FQDN of AppRemo and enter it

    Example: https://xxxx.appremo.jp/wf/


    mob_Appremo3.png

    AppRemo Configuration

    1. Log in to AppRemo with an administrator account, and open "Admin Menu > System Settings > SAML Settings".
      Appremo.png

    2. Configure "SAML Settings" as follows and click the "Register" button.
      Enable SAML authentication Check the box

      https://AppRemo's FQDN/wfmob/authmob/saml

      The "IdP URL" obtained from TrustLogin
      https://portal.trustlogin.com/ 

      Change the file extension of the "Certificate" obtained from TrustLogin to .cer and upload it


      mob_Appremo2.png

      TrustLogin User Configuration

      ① When a User Adds the App via My Page

      1. On "My Page", click the "Add App" button.
      2. On the "Register App" screen, select "AppRemo [Mobile] (SAML)" and click the "Next" button in the upper right of the screen.
      3. If you want to change the "Display Name", enter it, and click the "Register" button.

      ② When an Administrator Adds Members

      1. In the "Admin Page > Apps" menu, search for the "AppRemo [Mobile] (SAML)" app and click it.
      2. Click "Add Member", select the users to add from the member list, and click the "Register" button to add them.