|
Item |
Details |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For how to configure custom attributes, see here |
||
|
SP-side configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
Supports provisioning via API (accounts can be managed in TrustLogin) |
|
|
Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion is not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified device compatibility |
〇 |
PC - Browser |
|
ー |
PC - Desktop app |
|
|
〇 |
iOS - Standard browser (Safari) |
|
|
〇 |
iOS - TrustLogin mobile app in-app browser |
|
|
ー |
iOS - Native app |
|
|
〇 |
Android - Standard browser (Chrome) |
|
|
〇 |
Android - TrustLogin mobile app in-app browser |
|
|
ー |
Android - Native app |
|
TrustLogin Admin Page Configuration
- Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
- Search on the "Corporate App Registration" screen and select "[Questionnaire] Smile Survey (SAML)".
- Note down the "IdP URL" and "Issuer/Entity ID" values under "Identity Provider Information", then download the certificate using the "Get Certificate" button.
- Convert the extension of the downloaded certificate to ".pem".
Now, switch over to the configuration on the Smile Survey side.
Do not click the "Register" button yet — open Smile Survey in a separate window.
Smile Survey Configuration
- Log in with an administrator account and open "Administrator Settings > Questionnaire Authentication Settings > Register New Authentication Setting".
- Configure as follows, then click "Save".
Label Any name of your choice Target questionnaire Select the questionnaire to be accessed via SAML authentication from the dropdown Identifier (Entity ID) The "Issuer/Entity ID" you noted down from TrustLogin Login URL The "IdP URL" you noted down from TrustLogin Certificate The "certificate" you downloaded from TrustLogin
Note: Please upload the file after changing its extension to ".pem".
Parameter name to be set as the member ID upon response Enter "email"
Audience Copy and note this down Application Callback URL Copy and note this down
- Return to the questionnaire list screen and select the questionnaire for which you want to configure SAML authentication.
- Turn "Use questionnaire login page" ON, select "SSO Authentication" under "Login type", and save the settings using "Save questionnaire settings".
- SP-Initiated SSO becomes available via the "Questionnaire URL" under "Basic Information". Note this down as needed and share it with questionnaire respondents. SP-Initiated SSO is also available via the "QR Code".
Return to the TrustLogin Admin Page again.
TrustLogin Admin Page Configuration (Continued)
- Configure "Service Provider Settings" as follows.
Entity ID The "Audience" you noted down from Smile Survey ACS URL for the Service The "Application Callback URL" you noted down from Smile Survey
- Save by clicking the "Register" button.
TrustLogin User Configuration
① When a user adds the app from My Page
- Click the "Add App" button in "My Page".
- On the "App Registration" screen, select "[Questionnaire] Smile Survey (SAML)" and click the "Next" button at the top right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
② When an administrator adds a member
- In the "Admin Page > Apps" menu, search for and click the "[Questionnaire] Smile Survey (SAML)" app.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.