|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure custom attributes, see here |
||
|
SP Configuration |
〇 |
Configured by the administrator |
|
Request SP to configure |
||
|
Provisioning |
API-based Provisioning supported (account management available in TrustLogin) |
|
| 〇 |
SAML JITProvisioning supported (account management available in TrustLogin; user deletion not supported) |
|
|
|
None (accounts created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Device Compatibility |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
ー |
iOS - TrustLogin Mobile App In-App Browser |
|
|
ー |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
ー |
Android - TrustLogin Mobile App In-App Browser |
|
|
ー |
Android - Native App |
|
TrustLogin Admin Page Settings
-
Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Register Company App" screen and select "learningBOX (SAML)".
- Note down the values of "Identity Provider URL" and "Issuer / Entity ID" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
Now, switch to configuring learningBOX.
Do not click the "Register" button yet — open learningBOX in a separate window.
learningBOX Settings
- Log in as a user with access permissions to the settings page, and open "Side Menu > System Settings > Site Customizer > Basic Settings".
- Open "External System Integration > Use SAML > Detailed Settings" and configure as follows.
Automatically register account upon successful SAML authentication On Include RequestedAuthnContext attribute On Issuer URL(IdP Entity ID) The "Issuer / Entity ID" noted down from TrustLogin HTTP-POST URL The "Identity Provider URL" noted down from TrustLogin X509Certificate Paste the contents of the "Certificate" noted down from TrustLogin
- Scroll down the screen and select "Name > Add".
- Select "surname: {urn:oid:2.5.4.4}" from the dropdown and add it.
- Click "Name > Add" again, then select "givenName: {urn:oid:2.5.4.42}" from the dropdown and add it.
- Confirm that the selected values are populated in the Name fields, and save the settings by clicking the "Save" button.
- Open "SP (learningBOX) Configuration Information" and note down the "learningBOX Entity ID" and "learningBOX ACS URL".
Note: The "learningBOX Login URL" is the SP-Initiated URL. Note it down if needed.
SP-Initiated login is also available from the learningBOX login screen.
Return to the TrustLogin Admin Page again.
TrustLogin Admin Page Settings (Continued)
- Configure "Service Provider Settings" as follows.
Entity ID The "learningBOX Entity ID" noted down from learningBOX ACS URL to Service The "learningBOX ACS URL" noted down from learningBOX
- Save by clicking the "Register" button.
TrustLogin User Settings
① When a user adds the app from My Page
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "learningBOX (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter it and click the "Save" button.
②When an administrator adds members
- Search for and click the "learningBOX (SAML)" app in the "Admin Page > App" menu.
- Click "Add Member", select the user to add from the member list, and click the "Save" button to add them.