|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For how to configure custom attributes, see here |
||
|
SP-side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
API-based Provisioning supported (account management available in TrustLogin) |
|
|
SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified Operation by Device |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
ー |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
ー |
Android - Native App |
|
TrustLogin Admin Page Settings
-
Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
- On the "Register Company App" screen, search and select "Runbook (SAML)".
- Note down the values of "IdP URL" and "Issuer / Entity ID" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
- Convert the extension of the downloaded certificate to ".cer".
Now, let's move on to the settings on the Runbook side.
Do not click the "Register" button yet — open Runbook in a separate window.
Runbook Settings
- Open the organization name dropdown at the top right and select "Billing / Security".
- Open "Single Sign-On" and check "Enable SAML Authentication".
- Configure each item as follows and save by clicking the "Save" button.
Note: Checking "Require SAML Authentication" disables password login, restricting login to SAML authentication only. If you want to enforce this restriction, we recommend switching over only after confirming the single sign-on connection is successful and notifying your users.Login URL The "IdP URL" obtained from TrustLogin Entity ID The "Issuer / Entity ID" obtained from TrustLogin Signing Certificate The "Certificate" obtained from TrustLogin, converted to a .cer file
- Click "Download Metadata" to obtain the metadata.
Return to the TrustLogin Admin Page again.
TrustLogin Admin Page Settings (continued)
- Upload the metadata obtained from Runbook to the metadata field under "Service Provider Settings".
- Save by clicking the "Register" button.
TrustLogin User Settings
① When a User Adds the App from My Page
- On "My Page", click the "Add App" button.
- On the "Register App" screen, select "Runbook (SAML)" and click the "Next" button at the top right of the screen.
- If you want to change the "Display Name", enter it and click the "Save" button.
② When an Administrator Adds Members
- In the "Admin Page > App" menu, search for and click the "Runbook (SAML)" app.
- Click "Add Member", select the user to add from the member list, and click the "Save" button to add them.