How to Configure SAML Authentication for AI Travel

Item

Details

Pre-check

  • AI Travel requires prior configuration on its side.

  • You need to create an account in AI Travel using the same email address as TrustLogin.

  • Please refer to the manual provided by AI Travel for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the Administrator

Request SP to configure

Provisioning

API-based Provisioning supported (Account management available in TrustLogin)

SAML JIT Provisioning supported (Account management available in TrustLogin; user deletion not available)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. On the "Register Company App" screen, search and select "AI Travel (SAML)".
    AI Travel02.png

  3. Under "Identity Provider Information", note down the values of "Identity Provider URL" and "Issuer / Entity ID", and download the certificate using the "Get Certificate" button.

    03.png

  4. Click the "Register" button to save.

AI Travel Settings

  1. Log in to the AI Travel admin screen, open "System Settings", and scroll down to "External Integrations > Single Sign-On".
    Configure the settings as follows, and click "Save".
    Enable Check "Enable Single Sign-On"
    Metadata URL

    Enter the "Issuer / Entity ID" you noted down from TrustLogin

    Login URL Enter the "Identity Provider URL" you noted down from TrustLogin
    Logout URL https://portal.trustlogin.com/
    Certificate File Upload the "Certificate" you noted down from TrustLogin

    AI Travel01.png

  2. Open "Employee Master", and select the user to apply SSO login to.
    Select "SSO" as the login method, and click "Save".
    AI Travel03.png

TrustLogin User Settings

① When a User Adds the App from My Page

  1. On "My Page", click the "Add App" button.
  2. On the "Register App" screen, select "AI Travel (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Save" button.

② When an Administrator Adds Members

  1. In the "Admin Page > App" menu, search for and click the "AI Travel (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Save" button to add them.

How to Configure SAML Authentication for AI Travel

Item

Details

Pre-check

  • AI Travel requires prior configuration on its side.

  • You need to create an account in AI Travel using the same email address as TrustLogin.

  • Please refer to the manual provided by AI Travel for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the Administrator

Request SP to configure

Provisioning

API-based Provisioning supported (Account management available in TrustLogin)

SAML JIT Provisioning supported (Account management available in TrustLogin; user deletion not available)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. On the "Register Company App" screen, search and select "AI Travel (SAML)".
    AI Travel02.png

  3. Under "Identity Provider Information", note down the values of "Identity Provider URL" and "Issuer / Entity ID", and download the certificate using the "Get Certificate" button.

    03.png

  4. Click the "Register" button to save.

AI Travel Settings

  1. Log in to the AI Travel admin screen, open "System Settings", and scroll down to "External Integrations > Single Sign-On".
    Configure the settings as follows, and click "Save".
    Enable Check "Enable Single Sign-On"
    Metadata URL

    Enter the "Issuer / Entity ID" you noted down from TrustLogin

    Login URL Enter the "Identity Provider URL" you noted down from TrustLogin
    Logout URL https://portal.trustlogin.com/
    Certificate File Upload the "Certificate" you noted down from TrustLogin

    AI Travel01.png

  2. Open "Employee Master", and select the user to apply SSO login to.
    Select "SSO" as the login method, and click "Save".
    AI Travel03.png

TrustLogin User Settings

① When a User Adds the App from My Page

  1. On "My Page", click the "Add App" button.
  2. On the "Register App" screen, select "AI Travel (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Save" button.

② When an Administrator Adds Members

  1. In the "Admin Page > App" menu, search for and click the "AI Travel (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Save" button to add them.