Configuring Password Authentication — Logging In with Active Directory and TrustLogin Passwords

Password Authentication is a feature that allows members invited to TrustLogin to log in using their TrustLogin ID and password.

For example, when using Active Directory integration or external IdP integration (SAML) to log in to TrustLogin with an ID and password other than TrustLogin's own, enabling this setting allows you to also log in using the ID and password configured in TrustLogin. If disabled, you can only log in using the ID and password of Active Directory or the linked IdP (SaaS provider).

Note: In case login using an ID other than TrustLogin's own becomes unavailable for any reason, we recommend assigning Password Authentication to administrator users.

Requiring Members to Set a TrustLogin Password When Added

The default setting is "Enabled." In this state, when you invite a member to TrustLogin, an email is sent asking them to set a password and secret question.

Not Requiring Members to Set a TrustLogin Password When Added

This feature is a way to prevent members who are about to be added to TrustLogin from being required to set a password and secret question.

  1. Log in to the TrustLogin Admin Page.
  2. Open "Settings" from the menu on the left.
  3. The "Optional Features" screen opens. Click "Configure" for Password Authentication.

    SKUID__12_.png

  4. Click "Edit."

    4.png

  5. Turn off the toggle for "Automatically assign Password Authentication when a member is registered," and save.

    5.png

Note: If Active Directory integration or external IdP integration (SAML) is not configured, members invited after this setting is applied will not be able to log in to TrustLogin. After applying this setting, configure member addition settings in each integration option.

・For adding members via Active Directory integration, see here
・For instructions on configuring external IdP integration (SAML), see here


Setting Members for Password Authentication

If you apply this setting while Active Directory integration or IdP integration is in place, members will also be able to log in using their TrustLogin ID and password.

  1. Log in to the TrustLogin Admin Page.
  2. Open "Settings" from the menu on the left.
  3. The "Optional Features" screen opens. Click "Configure" for Password Authentication.
  4. Click "Add Member" or "Add Group."

    mceclip0.png

  5. Select the members/groups you want to be able to log in using TrustLogin Password Authentication, and click "Register."

    Note: Clicking Register sends a TrustLogin password registration email to the target members. The member opens the URL in that email and sets their TrustLogin login password and secret question.

    SKUID__11_.png

  6. This completes the setup.

    From now on, each time the target members log in, they will be able to choose whether to authenticate with their TrustLogin password or with another ID.

mceclip3.png

Excluding Members from Password Authentication

If you apply this setting while both Active Directory integration/IdP integration and Password Authentication are in place, members will only be able to log in via Active Directory integration or IdP integration.

Note 1: If Active Directory integration or external IdP integration (SAML) is not configured, applying this setting will prevent members from logging in to TrustLogin. After applying this setting, configure member addition settings in each integration option.

・For adding members via Active Directory integration, see here
・For instructions on configuring external IdP integration (SAML), see here

Note 2: Performing this action deletes the target member's TrustLogin password and secret question. Adding them again will send a TrustLogin password registration email.

  1. Log in to the TrustLogin Admin Page.
  2. Open "Settings" from the menu on the left.
  3. The "Optional Features" screen opens. Click "Configure" for Password Authentication.

  4. In the member list/group list in the lower half of the screen, select the checkbox for the target, and unassign it using the "Remove" button or the trash can button.

    unassign.png

  5. This completes the setup.

Sending an Email to Users Who Have Not Registered a Password

You can resend the password setup guidance email to users who have not yet set a password.

  1. Open the TrustLogin Admin Page and go to "Settings > Password Authentication > Configure."

    p01.png

  2. Click the number displayed next to "Password Not Registered" to filter the "All Assigned Members" list below to show only the target users who have not registered a password.

    p02.png

  3. Check the target users to whom you want to resend the password registration email, and click "Resend Password Registration Email."

    p03.png

  4. A message confirming that the password registration email has been sent will appear, and the email will be resent.

Configuring Password Authentication — Logging In with Active Directory and TrustLogin Passwords

Password Authentication is a feature that allows members invited to TrustLogin to log in using their TrustLogin ID and password.

For example, when using Active Directory integration or external IdP integration (SAML) to log in to TrustLogin with an ID and password other than TrustLogin's own, enabling this setting allows you to also log in using the ID and password configured in TrustLogin. If disabled, you can only log in using the ID and password of Active Directory or the linked IdP (SaaS provider).

Note: In case login using an ID other than TrustLogin's own becomes unavailable for any reason, we recommend assigning Password Authentication to administrator users.

Requiring Members to Set a TrustLogin Password When Added

The default setting is "Enabled." In this state, when you invite a member to TrustLogin, an email is sent asking them to set a password and secret question.

Not Requiring Members to Set a TrustLogin Password When Added

This feature is a way to prevent members who are about to be added to TrustLogin from being required to set a password and secret question.

  1. Log in to the TrustLogin Admin Page.
  2. Open "Settings" from the menu on the left.
  3. The "Optional Features" screen opens. Click "Configure" for Password Authentication.

    SKUID__12_.png

  4. Click "Edit."

    4.png

  5. Turn off the toggle for "Automatically assign Password Authentication when a member is registered," and save.

    5.png

Note: If Active Directory integration or external IdP integration (SAML) is not configured, members invited after this setting is applied will not be able to log in to TrustLogin. After applying this setting, configure member addition settings in each integration option.

・For adding members via Active Directory integration, see here
・For instructions on configuring external IdP integration (SAML), see here


Setting Members for Password Authentication

If you apply this setting while Active Directory integration or IdP integration is in place, members will also be able to log in using their TrustLogin ID and password.

  1. Log in to the TrustLogin Admin Page.
  2. Open "Settings" from the menu on the left.
  3. The "Optional Features" screen opens. Click "Configure" for Password Authentication.
  4. Click "Add Member" or "Add Group."

    mceclip0.png

  5. Select the members/groups you want to be able to log in using TrustLogin Password Authentication, and click "Register."

    Note: Clicking Register sends a TrustLogin password registration email to the target members. The member opens the URL in that email and sets their TrustLogin login password and secret question.

    SKUID__11_.png

  6. This completes the setup.

    From now on, each time the target members log in, they will be able to choose whether to authenticate with their TrustLogin password or with another ID.

mceclip3.png

Excluding Members from Password Authentication

If you apply this setting while both Active Directory integration/IdP integration and Password Authentication are in place, members will only be able to log in via Active Directory integration or IdP integration.

Note 1: If Active Directory integration or external IdP integration (SAML) is not configured, applying this setting will prevent members from logging in to TrustLogin. After applying this setting, configure member addition settings in each integration option.

・For adding members via Active Directory integration, see here
・For instructions on configuring external IdP integration (SAML), see here

Note 2: Performing this action deletes the target member's TrustLogin password and secret question. Adding them again will send a TrustLogin password registration email.

  1. Log in to the TrustLogin Admin Page.
  2. Open "Settings" from the menu on the left.
  3. The "Optional Features" screen opens. Click "Configure" for Password Authentication.

  4. In the member list/group list in the lower half of the screen, select the checkbox for the target, and unassign it using the "Remove" button or the trash can button.

    unassign.png

  5. This completes the setup.

Sending an Email to Users Who Have Not Registered a Password

You can resend the password setup guidance email to users who have not yet set a password.

  1. Open the TrustLogin Admin Page and go to "Settings > Password Authentication > Configure."

    p01.png

  2. Click the number displayed next to "Password Not Registered" to filter the "All Assigned Members" list below to show only the target users who have not registered a password.

    p02.png

  3. Check the target users to whom you want to resend the password registration email, and click "Resend Password Registration Email."

    p03.png

  4. A message confirming that the password registration email has been sent will appear, and the email will be resent.