[Legacy] How to Configure SAML Authentication for Securio

A new SAML configuration screen was implemented in Securio in March 2024. For details, see here
This page describes the old SAML configuration method, so if you are setting up SAML for Securio for the first time, please refer to the latest manual here. Some of the information on this page may differ from the latest version.

Item

Details

Prerequisites

  • Prior configuration in Securio is required.

  • You must create an account in Securio using the same email address as your TrustLogin account.

  • For the latest configuration steps, please refer to the manual provided by Securio.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-side configuration

Configured by the administrator

Request the SP to configure it

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified operation status by device

PC - Browser

PC - Desktop app

iOS - Default browser (Safari)

iOS - TrustLogin mobile app in-app browser

iOS - Native app

Android - Default browser (Chrome)

Android - TrustLogin mobile app in-app browser

Android - Native app

Configuring the TrustLogin Admin Page

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Company App" screen, search for and select "Securio (SAML)".
    02.png

  3. Under "Identity Provider Information", download the metadata using the "Download Metadata" button.
    03.png


Now, switch to configuring the Securio side.
Do not click the "Register" button yet — open Securio in a separate window.

Configuring Securio

  1. Open "Settings > SAML Settings" and upload the "Metadata" obtained from TrustLogin under "Use metadata file". Confirm that the configuration information has been automatically populated, then click the "Save" button.

    Note: You can choose the setting for "Disable Password Login" according to your operational needs, but here we recommend selecting "No" and changing it to "Yes" after confirming that the SAML configuration is successful.
    04.png

  2. Switch the SAML configuration to "Enabled".
    05.png

  3. Switch to the "Service Provider Information" tab and copy the "Entity ID", "Assertion Consumer Service", and "Logout URL" to make a note of them.
    The "Access Service URL" is the URL used when logging in via SP-Initiated SSO. Make a note of it if needed.
    06.png

Now return to the TrustLogin Admin Page.

Configuring the TrustLogin Admin Page (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "Entity ID" obtained from Securio
    ACS URL for the Service The "Assertion Consumer Service" obtained from Securio
    Logout URL The "Logout URL" obtained from Securio Note:
    Note: Single logout is planned as a future feature addition, but it is not currently implemented and does not function

    07.png

  2. Click the "Register" button to save.

Configuring TrustLogin Users

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Securio (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds members

  1. In the "Admin Page > Apps" menu, search for and click the "Securio (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

[Legacy] How to Configure SAML Authentication for Securio

A new SAML configuration screen was implemented in Securio in March 2024. For details, see here
This page describes the old SAML configuration method, so if you are setting up SAML for Securio for the first time, please refer to the latest manual here. Some of the information on this page may differ from the latest version.

Item

Details

Prerequisites

  • Prior configuration in Securio is required.

  • You must create an account in Securio using the same email address as your TrustLogin account.

  • For the latest configuration steps, please refer to the manual provided by Securio.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-side configuration

Configured by the administrator

Request the SP to configure it

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified operation status by device

PC - Browser

PC - Desktop app

iOS - Default browser (Safari)

iOS - TrustLogin mobile app in-app browser

iOS - Native app

Android - Default browser (Chrome)

Android - TrustLogin mobile app in-app browser

Android - Native app

Configuring the TrustLogin Admin Page

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Company App" screen, search for and select "Securio (SAML)".
    02.png

  3. Under "Identity Provider Information", download the metadata using the "Download Metadata" button.
    03.png


Now, switch to configuring the Securio side.
Do not click the "Register" button yet — open Securio in a separate window.

Configuring Securio

  1. Open "Settings > SAML Settings" and upload the "Metadata" obtained from TrustLogin under "Use metadata file". Confirm that the configuration information has been automatically populated, then click the "Save" button.

    Note: You can choose the setting for "Disable Password Login" according to your operational needs, but here we recommend selecting "No" and changing it to "Yes" after confirming that the SAML configuration is successful.
    04.png

  2. Switch the SAML configuration to "Enabled".
    05.png

  3. Switch to the "Service Provider Information" tab and copy the "Entity ID", "Assertion Consumer Service", and "Logout URL" to make a note of them.
    The "Access Service URL" is the URL used when logging in via SP-Initiated SSO. Make a note of it if needed.
    06.png

Now return to the TrustLogin Admin Page.

Configuring the TrustLogin Admin Page (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "Entity ID" obtained from Securio
    ACS URL for the Service The "Assertion Consumer Service" obtained from Securio
    Logout URL The "Logout URL" obtained from Securio Note:
    Note: Single logout is planned as a future feature addition, but it is not currently implemented and does not function

    07.png

  2. Click the "Register" button to save.

Configuring TrustLogin Users

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Securio (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds members

  1. In the "Admin Page > Apps" menu, search for and click the "Securio (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.