How to Configure SAML Authentication for GENIEE SFA/CRM

Item

Details

Prerequisites

  • GENIEE SFA/CRM requires prior configuration.

  • You must create an account in GENIEE SFA/CRM using the same email address as your TrustLogin account.

  • To use SSO with GENIEE SFA/CRM, you must be subscribed to the Pro Plan or the Enterprise Plan. If you would like to set up SSO, please contact Geniee, Inc.
  • For the latest configuration steps, please refer to the manual provided by GENIEE SFA/CRM.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, click here

SP-side configuration

Configured by the administrator

Request the configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified operation by device

PC - Browser

PC - Desktop App

iOS - Native Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Native Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "GENIEE SFA/CRM (SAML)".
    02.png

  3. Note the values of the "Identity Provider URL" and "Issuer / Entity ID" in the "Identity Provider Information" section, and download the certificate by clicking the "Get Certificate" button.
    03.png

  4. Save by clicking the "Register" button.

  5. Send the "Identity Provider URL", "Issuer / Entity ID", and "Certificate" you obtained to your Geniee, Inc. representative and request that they set up SAML.

  6. Once Geniee, Inc. notifies you that the SAML configuration is complete, open "App Management Screen > Edit SAML App Settings" and configure the Service Provider settings.
    Login URL The "Login URL" provided by GENIEE SFA/CRM
    Entity ID The "Entity ID" provided by GENIEE SFA/CRM
    ACS URL for the Service The "ACS URL" provided by GENIEE SFA/CRM

    04.png

  7. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "GENIEE SFA/CRM (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. In the "Admin Page > Apps" menu, search for and click the "GENIEE SFA/CRM (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, then click the "Register" button to add them.

How to Log In

① Logging in with "GENIEE SFA/CRM (SAML)"

  1. Launching "GENIEE SFA/CRM (SAML)" from My Page or the browser extension will take you to the GENIEE SFA/CRM login screen. Enter your "Organization Name" and click the "Continue" button.
    05.png

  2. Clicking the "Continue with (Organization Name)" button will complete the login.
    06.png

② Using the helper app

We also provide a helper app that can automatically fill in the "Organization Name".
Search for it on the app search screen and register "[SAML Helper] GENIEE SFA/CRM" to use it.
Note: The helper app can only be used in a PC browser.
Note: It can also be used in the iOS in-app browser and the Android in-app browser, but you will be asked to log in to TrustLogin again.
07.png

How to Configure SAML Authentication for GENIEE SFA/CRM

Item

Details

Prerequisites

  • GENIEE SFA/CRM requires prior configuration.

  • You must create an account in GENIEE SFA/CRM using the same email address as your TrustLogin account.

  • To use SSO with GENIEE SFA/CRM, you must be subscribed to the Pro Plan or the Enterprise Plan. If you would like to set up SSO, please contact Geniee, Inc.
  • For the latest configuration steps, please refer to the manual provided by GENIEE SFA/CRM.

Name ID

Email address

Custom attribute Note: For instructions on configuring custom attributes, click here

SP-side configuration

Configured by the administrator

Request the configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified operation by device

PC - Browser

PC - Desktop App

iOS - Native Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Native Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "GENIEE SFA/CRM (SAML)".
    02.png

  3. Note the values of the "Identity Provider URL" and "Issuer / Entity ID" in the "Identity Provider Information" section, and download the certificate by clicking the "Get Certificate" button.
    03.png

  4. Save by clicking the "Register" button.

  5. Send the "Identity Provider URL", "Issuer / Entity ID", and "Certificate" you obtained to your Geniee, Inc. representative and request that they set up SAML.

  6. Once Geniee, Inc. notifies you that the SAML configuration is complete, open "App Management Screen > Edit SAML App Settings" and configure the Service Provider settings.
    Login URL The "Login URL" provided by GENIEE SFA/CRM
    Entity ID The "Entity ID" provided by GENIEE SFA/CRM
    ACS URL for the Service The "ACS URL" provided by GENIEE SFA/CRM

    04.png

  7. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "GENIEE SFA/CRM (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. In the "Admin Page > Apps" menu, search for and click the "GENIEE SFA/CRM (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, then click the "Register" button to add them.

How to Log In

① Logging in with "GENIEE SFA/CRM (SAML)"

  1. Launching "GENIEE SFA/CRM (SAML)" from My Page or the browser extension will take you to the GENIEE SFA/CRM login screen. Enter your "Organization Name" and click the "Continue" button.
    05.png

  2. Clicking the "Continue with (Organization Name)" button will complete the login.
    06.png

② Using the helper app

We also provide a helper app that can automatically fill in the "Organization Name".
Search for it on the app search screen and register "[SAML Helper] GENIEE SFA/CRM" to use it.
Note: The helper app can only be used in a PC browser.
Note: It can also be used in the iOS in-app browser and the Android in-app browser, but you will be asked to log in to TrustLogin again.
07.png