How to Configure SAML Authentication for Zoho

Item

Details

Preliminary Checks

  • This manual describes how to configure SAML settings in Zoho Accounts.
    For details and the latest setup instructions, please refer to the manual provided by Zoho.
    Configuring SAML Authentication in Zoho Accounts
  • Prior configuration in Zoho is required.

  • You must create an account in Zoho using the same email address as your TrustLogin account.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-side Configuration

To be configured by the administrator

Request the SP to configure the settings

Provisioning

Supports provisioning via API (accounts can be managed from TrustLogin)

Supports SAML JIT provisioning (accounts can be managed from TrustLogin; user deletion is not supported)

None (accounts are created in each system)
Note: For instructions on how to configure provisioning, see here

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - In-App Browser of the TrustLogin Mobile App

iOS - Native App

Android - Standard Browser (Chrome)

Android - In-App Browser of the TrustLogin Mobile App

Android - Native App

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "Zoho (SAML)."
    02.png

  3. Note down the value of "IdP URL" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.
    03.png

  4. Change the extension of the downloaded certificate to ".cer" so that the certificate file is in CER format.


Now, switch to configuring Zoho.
Do not click the "Register" button yet — open Zoho in a separate window.

Zoho Configuration

  1. Log in with an organization administrator account, open "Organization > SAML Authentication" from the left menu, and click the "Configure" button.
    04.png

  2. Configure each item as follows, then click the "Submit" button to save.
    Sign-in URL The "IdP URL" obtained from TrustLogin
    Zoho Service After login, select the service to redirect to
    Name Identifier Email address
    X.509 Certificate The "certificate" obtained from TrustLogin, converted to CER format

    05.png

  3. Download the "Metadata" using the "Download" button.
    06.png

Return to the TrustLogin admin page.

TrustLogin Admin Page Configuration (Continued)

  1. Upload the "Metadata" downloaded from Zoho to "Metadata" under "Service Provider Settings."
    07.png
  2. Click the "Register" button to save.

TrustLogin User Configuration

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page."
  2. On the "Register App" screen, select "Zoho (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter a new one, then click the "Register" button.

② When an Administrator Adds a Member

  1. In the "Admin Page > Apps" menu, search for and click the "Zoho (SAML)" app.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Zoho

Item

Details

Preliminary Checks

  • This manual describes how to configure SAML settings in Zoho Accounts.
    For details and the latest setup instructions, please refer to the manual provided by Zoho.
    Configuring SAML Authentication in Zoho Accounts
  • Prior configuration in Zoho is required.

  • You must create an account in Zoho using the same email address as your TrustLogin account.

Name ID

Email address

Custom attribute Note: For instructions on how to configure custom attributes, see here

SP-side Configuration

To be configured by the administrator

Request the SP to configure the settings

Provisioning

Supports provisioning via API (accounts can be managed from TrustLogin)

Supports SAML JIT provisioning (accounts can be managed from TrustLogin; user deletion is not supported)

None (accounts are created in each system)
Note: For instructions on how to configure provisioning, see here

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - In-App Browser of the TrustLogin Mobile App

iOS - Native App

Android - Standard Browser (Chrome)

Android - In-App Browser of the TrustLogin Mobile App

Android - Native App

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "Zoho (SAML)."
    02.png

  3. Note down the value of "IdP URL" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.
    03.png

  4. Change the extension of the downloaded certificate to ".cer" so that the certificate file is in CER format.


Now, switch to configuring Zoho.
Do not click the "Register" button yet — open Zoho in a separate window.

Zoho Configuration

  1. Log in with an organization administrator account, open "Organization > SAML Authentication" from the left menu, and click the "Configure" button.
    04.png

  2. Configure each item as follows, then click the "Submit" button to save.
    Sign-in URL The "IdP URL" obtained from TrustLogin
    Zoho Service After login, select the service to redirect to
    Name Identifier Email address
    X.509 Certificate The "certificate" obtained from TrustLogin, converted to CER format

    05.png

  3. Download the "Metadata" using the "Download" button.
    06.png

Return to the TrustLogin admin page.

TrustLogin Admin Page Configuration (Continued)

  1. Upload the "Metadata" downloaded from Zoho to "Metadata" under "Service Provider Settings."
    07.png
  2. Click the "Register" button to save.

TrustLogin User Configuration

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page."
  2. On the "Register App" screen, select "Zoho (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter a new one, then click the "Register" button.

② When an Administrator Adds a Member

  1. In the "Admin Page > Apps" menu, search for and click the "Zoho (SAML)" app.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.