How to Configure SAML Authentication for Smile Survey

Item

Details

Prerequisites

  • Prior configuration is required in Smile Survey.

  • You must create an account in Smile Survey using the same email address as your TrustLogin account.

  • For instructions on how to configure SSO for a Smile Survey questionnaire, please check here.
  • Please refer to the manual provided by Smile Survey for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-side configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion is not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified device compatibility

PC - Browser

PC - Desktop app

iOS - Standard browser (Safari)

iOS - TrustLogin mobile app in-app browser

iOS - Native app

Android - Standard browser (Chrome)

Android - TrustLogin mobile app in-app browser

Android - Native app

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Corporate App Registration" screen and select "Smile Survey (SAML)".
    Smile Survey03.png

  3. Note down the "IdP URL" and "Issuer/Entity ID" values under "Identity Provider Information", then download the certificate using the "Get Certificate" button.03.png

  4. Convert the extension of the downloaded certificate to ".pem".

Now, switch over to the configuration on the Smile Survey side.
Do not click the "Register" button yet — open Smile Survey in a separate window.

Smile Survey Configuration

  1. Log in with an administrator account and open "Administrator Settings > SSO Settings".
    Configure as follows, then click "Update".
    Identifier (Entity ID) The "Issuer/Entity ID" you noted down from TrustLogin
    Login URL The "IdP URL" you noted down from TrustLogin
    Certificate

    The "certificate" you downloaded from TrustLogin

    Note: Please upload the file after changing its extension to ".pem".

    Disable normal login

    If you check this box, administrators will also be required to log in via SAML,

    and password login will no longer be possible.

    If you check this box, be sure to register an email address for the administrator account, and we recommend checking it only after confirming that SAML authentication succeeds.

    Audience Copy and note this down
    ACS URL Copy and note this down

    Smile Survey.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "Audience" you noted down from Smile Survey
    ACS URL for the Service The "ACS URL" you noted down from Smile Survey

    Smile Survey02.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button in "My Page".
  2. On the "App Registration" screen, select "Smile Survey (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. In the "Admin Page > Apps" menu, search for and click the "Smile Survey (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Smile Survey

Item

Details

Prerequisites

  • Prior configuration is required in Smile Survey.

  • You must create an account in Smile Survey using the same email address as your TrustLogin account.

  • For instructions on how to configure SSO for a Smile Survey questionnaire, please check here.
  • Please refer to the manual provided by Smile Survey for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-side configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion is not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified device compatibility

PC - Browser

PC - Desktop app

iOS - Standard browser (Safari)

iOS - TrustLogin mobile app in-app browser

iOS - Native app

Android - Standard browser (Chrome)

Android - TrustLogin mobile app in-app browser

Android - Native app

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Corporate App Registration" screen and select "Smile Survey (SAML)".
    Smile Survey03.png

  3. Note down the "IdP URL" and "Issuer/Entity ID" values under "Identity Provider Information", then download the certificate using the "Get Certificate" button.03.png

  4. Convert the extension of the downloaded certificate to ".pem".

Now, switch over to the configuration on the Smile Survey side.
Do not click the "Register" button yet — open Smile Survey in a separate window.

Smile Survey Configuration

  1. Log in with an administrator account and open "Administrator Settings > SSO Settings".
    Configure as follows, then click "Update".
    Identifier (Entity ID) The "Issuer/Entity ID" you noted down from TrustLogin
    Login URL The "IdP URL" you noted down from TrustLogin
    Certificate

    The "certificate" you downloaded from TrustLogin

    Note: Please upload the file after changing its extension to ".pem".

    Disable normal login

    If you check this box, administrators will also be required to log in via SAML,

    and password login will no longer be possible.

    If you check this box, be sure to register an email address for the administrator account, and we recommend checking it only after confirming that SAML authentication succeeds.

    Audience Copy and note this down
    ACS URL Copy and note this down

    Smile Survey.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "Audience" you noted down from Smile Survey
    ACS URL for the Service The "ACS URL" you noted down from Smile Survey

    Smile Survey02.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button in "My Page".
  2. On the "App Registration" screen, select "Smile Survey (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. In the "Admin Page > Apps" menu, search for and click the "Smile Survey (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.