|
Item |
Details |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure custom attributes, see here |
||
|
SP-side Settings |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
Supports provisioning via API (account management possible in TrustLogin) |
|
|
Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified Operation Status by Device |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
※ |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
※ |
Android - Native App |
|
Note: The native app has been verified to work with NEXTa Meishi. If you are using client authentication, SSO is not available on the iOS native app or Android native app.
TrustLogin Admin Page Configuration
-
Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- On the "Register Corporate App" screen, search for and select "NEXTa Meishi (SAML)."
- Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.
Now, switch to configuring the NEXTa Meishi side.
Do not click the "Register" button yet — open NEXTa Meishi in a separate window.
NEXTa Meishi Configuration
- Log in to NEXTa Meishi, open "More," and click "Admin Settings."
- Click "User Management."
- Open "SSO Settings" and configure it as follows.
Endpoint Copy and note it down Entity ID Copy and note it down SAML 2.0 Endpoint URL Enter the "IdP URL" noted from TrustLogin IdP Name Enter the "Issuer/Entity ID" noted from TrustLogin Public Certificate Paste the contents of the "Certificate" noted from TrustLogin
Return to the TrustLogin Admin Page again.
TrustLogin Admin Page Configuration (Continued)
- Configure "Service Provider Settings" as follows.
Entity ID The "Entity ID" noted from NEXTa Meishi ACS URL for the Service The "Endpoint" noted from NEXTa Meishi
- Save by clicking the "Register" button.
- Add a user to the "NEXTa Meishi (SAML)" app to perform a connection test.
Return to NEXTa Meishi again.
NEXTa Meishi Admin Page Configuration (Continued)
- Return to the "SSO Settings" screen and click "Save Settings and Test."
- If SAML authentication is successful, the following screen will be displayed.
- After confirming that SSO was successful, turn on "Enable SSO." Then click "Open User Management Page."
- Select the user to apply SSO to, check "Enable SSO" on the edit screen, and click the "Submit" button.
TrustLogin User Settings
① When a User Adds the App from My Page
- On "My Page," click the "Add App" button.
- On the "Register App" screen, select "NEXTa Meishi (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name," enter it, then click the "Register" button.
② When an Administrator Adds a Member
- In the "Admin Page > Apps" menu, search for and click the "NEXTa Meishi (SAML)" app.
- Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.
Login Method
When logging in via SSO, if both "Nexta Meishi" and "Nexta Scheduler" apps are assigned in NEXTa Meishi, a login destination selection screen will be displayed. Select the app you want to log in to and proceed.
Note: This is also displayed in the iOS/Android standard browsers and the iOS/Android TrustLogin mobile app in-app browser.
Note: If only one app is assigned, the selection screen will not be displayed.