How to Configure SAML Authentication for Smile Survey (Questionnaire Authentication Settings)

Item

Details

Prerequisites

  • Prior configuration is required in Smile Survey.

  • You must create an account in Smile Survey using the same email address as your TrustLogin account.

  • This manual explains how to configure SAML authentication for a questionnaire created in Smile Survey. If you want to set up SAML authentication for a Smile Survey account, please check here.
  • Please refer to the manual provided by Smile Survey for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-side configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion is not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified device compatibility

PC - Browser

PC - Desktop app

iOS - Standard browser (Safari)

iOS - TrustLogin mobile app in-app browser

iOS - Native app

Android - Standard browser (Chrome)

Android - TrustLogin mobile app in-app browser

Android - Native app

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Corporate App Registration" screen and select "[Questionnaire] Smile Survey (SAML)".
    Questionnaire Authentication02.png

  3. Note down the "IdP URL" and "Issuer/Entity ID" values under "Identity Provider Information", then download the certificate using the "Get Certificate" button.03.png

  4. Convert the extension of the downloaded certificate to ".pem".

Now, switch over to the configuration on the Smile Survey side.
Do not click the "Register" button yet — open Smile Survey in a separate window.

Smile Survey Configuration

  1. Log in with an administrator account and open "Administrator Settings > Questionnaire Authentication Settings > Register New Authentication Setting".
    Questionnaire Authentication.png

  2. Configure as follows, then click "Save".
    Label Any name of your choice
    Target questionnaire Select the questionnaire to be accessed via SAML authentication from the dropdown
    Identifier (Entity ID) The "Issuer/Entity ID" you noted down from TrustLogin
    Login URL The "IdP URL" you noted down from TrustLogin
    Certificate

    The "certificate" you downloaded from TrustLogin

    Note: Please upload the file after changing its extension to ".pem".

    Parameter name to be set as the member ID upon response

    Enter "email"

    Audience Copy and note this down
    Application Callback URL Copy and note this down

    Questionnaire Authentication01.png

  3. Return to the questionnaire list screen and select the questionnaire for which you want to configure SAML authentication.
    Questionnaire Authentication04.png

  4. Turn "Use questionnaire login page" ON, select "SSO Authentication" under "Login type", and save the settings using "Save questionnaire settings".
    Questionnaire Authentication05.png

  5. SP-Initiated SSO becomes available via the "Questionnaire URL" under "Basic Information". Note this down as needed and share it with questionnaire respondents. SP-Initiated SSO is also available via the "QR Code".
    Questionnaire Authentication06.png


Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "Audience" you noted down from Smile Survey
    ACS URL for the Service The "Application Callback URL" you noted down from Smile Survey

    Questionnaire Authentication03.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button in "My Page".
  2. On the "App Registration" screen, select "[Questionnaire] Smile Survey (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. In the "Admin Page > Apps" menu, search for and click the "[Questionnaire] Smile Survey (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Smile Survey (Questionnaire Authentication Settings)

Item

Details

Prerequisites

  • Prior configuration is required in Smile Survey.

  • You must create an account in Smile Survey using the same email address as your TrustLogin account.

  • This manual explains how to configure SAML authentication for a questionnaire created in Smile Survey. If you want to set up SAML authentication for a Smile Survey account, please check here.
  • Please refer to the manual provided by Smile Survey for the latest configuration steps.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-side configuration

Configured by the administrator

Request configuration from the SP

Provisioning

Supports provisioning via API (accounts can be managed in TrustLogin)

Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion is not supported)

None (accounts are created in each system)

Access method

SP-Initiated SSO

IdP-Initiated SSO

Verified device compatibility

PC - Browser

PC - Desktop app

iOS - Standard browser (Safari)

iOS - TrustLogin mobile app in-app browser

iOS - Native app

Android - Standard browser (Chrome)

Android - TrustLogin mobile app in-app browser

Android - Native app

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Corporate App Registration" screen and select "[Questionnaire] Smile Survey (SAML)".
    Questionnaire Authentication02.png

  3. Note down the "IdP URL" and "Issuer/Entity ID" values under "Identity Provider Information", then download the certificate using the "Get Certificate" button.03.png

  4. Convert the extension of the downloaded certificate to ".pem".

Now, switch over to the configuration on the Smile Survey side.
Do not click the "Register" button yet — open Smile Survey in a separate window.

Smile Survey Configuration

  1. Log in with an administrator account and open "Administrator Settings > Questionnaire Authentication Settings > Register New Authentication Setting".
    Questionnaire Authentication.png

  2. Configure as follows, then click "Save".
    Label Any name of your choice
    Target questionnaire Select the questionnaire to be accessed via SAML authentication from the dropdown
    Identifier (Entity ID) The "Issuer/Entity ID" you noted down from TrustLogin
    Login URL The "IdP URL" you noted down from TrustLogin
    Certificate

    The "certificate" you downloaded from TrustLogin

    Note: Please upload the file after changing its extension to ".pem".

    Parameter name to be set as the member ID upon response

    Enter "email"

    Audience Copy and note this down
    Application Callback URL Copy and note this down

    Questionnaire Authentication01.png

  3. Return to the questionnaire list screen and select the questionnaire for which you want to configure SAML authentication.
    Questionnaire Authentication04.png

  4. Turn "Use questionnaire login page" ON, select "SSO Authentication" under "Login type", and save the settings using "Save questionnaire settings".
    Questionnaire Authentication05.png

  5. SP-Initiated SSO becomes available via the "Questionnaire URL" under "Basic Information". Note this down as needed and share it with questionnaire respondents. SP-Initiated SSO is also available via the "QR Code".
    Questionnaire Authentication06.png


Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Configuration (Continued)

  1. Configure "Service Provider Settings" as follows.
    Entity ID The "Audience" you noted down from Smile Survey
    ACS URL for the Service The "Application Callback URL" you noted down from Smile Survey

    Questionnaire Authentication03.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a user adds the app from My Page

  1. Click the "Add App" button in "My Page".
  2. On the "App Registration" screen, select "[Questionnaire] Smile Survey (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an administrator adds a member

  1. In the "Admin Page > Apps" menu, search for and click the "[Questionnaire] Smile Survey (SAML)" app.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.