|
Item |
Details |
|
|---|---|---|
|
Prior Confirmation |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure a custom attribute, click here |
||
|
SP-side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
API-based Provisioning supported (account management possible in TrustLogin) |
|
|
SAML JIT Provisioning supported (account management possible in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified Operation by Device |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
〇 |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
〇 |
Android - Native App |
|
Note: If you are using client authentication, SSO is not available on the iOS Native App or Android Native App.
TrustLogin Admin Page Configuration
- Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Register Company App" screen and select "Dojo Web Manual (SAML)".
- Download the metadata from the "Download Metadata" button under "Identity Provider Information".
Now, switch over to configuring Dojo Web Manual.
Do not click the "Register" button yet — open Dojo Web Manual in a separate window.
Dojo Web Manual Configuration
- Log in with an administrator account and open "Manual Management > SSO Detailed Settings". Use the copy button to note down the "Entity ID", "ACS URL", and "Logout URL" respectively.
- Click "Register Metadata" and select the "Metadata XML" tab. Upload the metadata you obtained from TrustLogin via "Select File", and click "Browse".
- The TrustLogin SAML configuration information will be entered as shown below. Click the "Confirm" button.
- Configure "Restrict Login Method to SSO" as needed, and save your settings with "Save".
Note: If you check "Restrict Login Method to SSO", login will be limited to SSO only, and password login will no longer be available. We recommend leaving this unchecked during initial setup, and checking it after SAML authentication has been confirmed to work successfully.
Now return to the TrustLogin Admin Page.
TrustLogin Admin Page Configuration (Continued)
- Configure the "Service Provider Settings" as follows.
Note: Single logout is planned as a future feature addition, but is currently not implemented and does not function.Entity ID The "Entity ID" obtained from Dojo Web Manual ACS URL to Service The "ACS URL" obtained from Dojo Web Manual Logout URL The "Logout URL" obtained from Dojo Web Manual, Note:
- Save by clicking the "Register" button.
TrustLogin User Settings
① When a User Adds the App via My Page
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "Dojo Web Manual (SAML)", and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
② When an Administrator Adds a Member
- Search for and click the "Dojo Web Manual (SAML)" app in the "Admin Page > App" menu.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.