A new SAML configuration screen was implemented in Securio in March 2024. For details, see here
This page describes the old SAML configuration method, so if you are setting up SAML for Securio for the first time, please refer to the latest manual here. Some of the information on this page may differ from the latest version.
|
Item |
Details |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure custom attributes, see here |
||
|
SP-side configuration |
〇 |
Configured by the administrator |
|
Request the SP to configure it |
||
|
Provisioning |
Supports provisioning via API (account management possible in TrustLogin) |
|
|
Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified operation status by device |
〇 |
PC - Browser |
|
ー |
PC - Desktop app |
|
|
〇 |
iOS - Default browser (Safari) |
|
|
〇 |
iOS - TrustLogin mobile app in-app browser |
|
|
ー |
iOS - Native app |
|
|
〇 |
Android - Default browser (Chrome) |
|
|
〇 |
Android - TrustLogin mobile app in-app browser |
|
|
ー |
Android - Native app |
|
Configuring the TrustLogin Admin Page
-
Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- On the "Register Company App" screen, search for and select "Securio (SAML)".
- Under "Identity Provider Information", download the metadata using the "Download Metadata" button.
Now, switch to configuring the Securio side.
Do not click the "Register" button yet — open Securio in a separate window.
Configuring Securio
- Open "Settings > SAML Settings" and upload the "Metadata" obtained from TrustLogin under "Use metadata file". Confirm that the configuration information has been automatically populated, then click the "Save" button.
Note: You can choose the setting for "Disable Password Login" according to your operational needs, but here we recommend selecting "No" and changing it to "Yes" after confirming that the SAML configuration is successful.
- Switch the SAML configuration to "Enabled".
- Switch to the "Service Provider Information" tab and copy the "Entity ID", "Assertion Consumer Service", and "Logout URL" to make a note of them.
The "Access Service URL" is the URL used when logging in via SP-Initiated SSO. Make a note of it if needed.
Now return to the TrustLogin Admin Page.
Configuring the TrustLogin Admin Page (Continued)
- Configure "Service Provider Settings" as follows.
Note: Single logout is planned as a future feature addition, but it is not currently implemented and does not functionEntity ID The "Entity ID" obtained from Securio ACS URL for the Service The "Assertion Consumer Service" obtained from Securio Logout URL The "Logout URL" obtained from Securio Note:
- Click the "Register" button to save.
Configuring TrustLogin Users
① When a user adds the app from My Page
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "Securio (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
② When an administrator adds members
- In the "Admin Page > Apps" menu, search for and click the "Securio (SAML)" app.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.