How to Configure SAML Authentication for Dojo Web Manual

Item

Details

Prior Confirmation

  • Pre-configuration is required in Dojo Web Manual.

  • You must create an account in Dojo Web Manual using the same email address as your TrustLogin account.

  • For the latest setup instructions, please refer to the manual provided by Dojo Web Manual.

Name ID

Email address

Custom attribute Note: For instructions on how to configure a custom attribute, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management possible in TrustLogin)

SAML JIT Provisioning supported (account management possible in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Note: If you are using client authentication, SSO is not available on the iOS Native App or Android Native App.

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Dojo Web Manual (SAML)".
    DojoWM05.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".03.png

Now, switch over to configuring Dojo Web Manual.
Do not click the "Register" button yet — open Dojo Web Manual in a separate window.

Dojo Web Manual Configuration

  1. Log in with an administrator account and open "Manual Management > SSO Detailed Settings". Use the copy button to note down the "Entity ID", "ACS URL", and "Logout URL" respectively.
    DojoWM.png

  2. Click "Register Metadata" and select the "Metadata XML" tab. Upload the metadata you obtained from TrustLogin via "Select File", and click "Browse".
    DojoWM01.png

  3. The TrustLogin SAML configuration information will be entered as shown below. Click the "Confirm" button.
    DojoWM02.png

  4. Configure "Restrict Login Method to SSO" as needed, and save your settings with "Save".
    Note: If you check "Restrict Login Method to SSO", login will be limited to SSO only, and password login will no longer be available. We recommend leaving this unchecked during initial setup, and checking it after SAML authentication has been confirmed to work successfully.
    DojoWM03.png

Now return to the TrustLogin Admin Page.

TrustLogin Admin Page Configuration (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "Entity ID" obtained from Dojo Web Manual
    ACS URL to Service The "ACS URL" obtained from Dojo Web Manual
    Logout URL The "Logout URL" obtained from Dojo Web Manual, Note:
    Note: Single logout is planned as a future feature addition, but is currently not implemented and does not function.

    DojoWM04.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Dojo Web Manual (SAML)", and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds a Member

  1. Search for and click the "Dojo Web Manual (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Dojo Web Manual

Item

Details

Prior Confirmation

  • Pre-configuration is required in Dojo Web Manual.

  • You must create an account in Dojo Web Manual using the same email address as your TrustLogin account.

  • For the latest setup instructions, please refer to the manual provided by Dojo Web Manual.

Name ID

Email address

Custom attribute Note: For instructions on how to configure a custom attribute, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management possible in TrustLogin)

SAML JIT Provisioning supported (account management possible in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

Note: If you are using client authentication, SSO is not available on the iOS Native App or Android Native App.

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Dojo Web Manual (SAML)".
    DojoWM05.png

  3. Download the metadata from the "Download Metadata" button under "Identity Provider Information".03.png

Now, switch over to configuring Dojo Web Manual.
Do not click the "Register" button yet — open Dojo Web Manual in a separate window.

Dojo Web Manual Configuration

  1. Log in with an administrator account and open "Manual Management > SSO Detailed Settings". Use the copy button to note down the "Entity ID", "ACS URL", and "Logout URL" respectively.
    DojoWM.png

  2. Click "Register Metadata" and select the "Metadata XML" tab. Upload the metadata you obtained from TrustLogin via "Select File", and click "Browse".
    DojoWM01.png

  3. The TrustLogin SAML configuration information will be entered as shown below. Click the "Confirm" button.
    DojoWM02.png

  4. Configure "Restrict Login Method to SSO" as needed, and save your settings with "Save".
    Note: If you check "Restrict Login Method to SSO", login will be limited to SSO only, and password login will no longer be available. We recommend leaving this unchecked during initial setup, and checking it after SAML authentication has been confirmed to work successfully.
    DojoWM03.png

Now return to the TrustLogin Admin Page.

TrustLogin Admin Page Configuration (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "Entity ID" obtained from Dojo Web Manual
    ACS URL to Service The "ACS URL" obtained from Dojo Web Manual
    Logout URL The "Logout URL" obtained from Dojo Web Manual, Note:
    Note: Single logout is planned as a future feature addition, but is currently not implemented and does not function.

    DojoWM04.png

  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Dojo Web Manual (SAML)", and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds a Member

  1. Search for and click the "Dojo Web Manual (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.