|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on configuring custom attributes, see here |
||
|
SP-side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
Supports provisioning via API (accounts can be managed in TrustLogin) |
|
|
Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
ー |
IdP-Initiated SSO |
|
|
Verified Operation Status by Device |
〇 |
PC - Browser |
|
※ |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
ー |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
※ |
Android - Native App |
|
Note: The app is available as a Progressive Web App (PWA) that can be installed from the kickflow website.
TrustLogin Admin Page Settings
-
Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Register Enterprise App" screen and select "kickflow (SAML)".
- Download the metadata from "Download Metadata" under "Identity Provider Information".
Now switch to the kickflow-side configuration. Please open kickflow in a separate window.
kickflow Settings
- Log in with an administrator account and select "Admin Center".
- Click "Security" and select "Authentication Method".
- Scroll down to "Single Sign-On (SSO) Settings". Click "Upload SAML Metadata", then click the paperclip button to upload the metadata.
- Copy and save the "Assertion Consumer Service URL (ACS URL)" and "Entity ID".
- In "JIT Provisioning Settings", turn off the "Enable JIT Provisioning" toggle.
-
In "Authentication Methods Available to Users", check "Single Sign-On" and click "Save".
TrustLogin Admin Page Settings (Continued)-
Set each item under "Service Provider Settings" using the kickflow information as follows.
Login URL field Enter [your company ID].kickflow.com/startSso
Note: You can also check your kickflow company ID from the login URL.Entity ID Enter the "Entity ID" you copied from kickflow ACS URL for Service Enter the "Assertion Consumer Service URL (ACS URL)" you copied from kickflow
- Save the settings using the "Register" button.
-
Set each item under "Service Provider Settings" using the kickflow information as follows.
TrustLogin User Settings
① When a User Adds the App from My Page
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "kickflow (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter it, and click the "Register" button.
② When an Administrator Adds Members
- In the "Admin Page > App" menu, search for and click the "kickflow (SAML)" app.
- Click "Add Member", select the users to add from the member list, and click the "Register" button to add them.