|
Item |
Details |
|
|---|---|---|
|
Prior Confirmation |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure a custom attribute, click here |
||
|
SP-side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
Provisioning via API supported (account management possible in TrustLogin) |
|
| 〇 |
SAML JIT provisioning supported (account management possible in TrustLogin; user deletion not supported) |
|
|
|
None (accounts are created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
ー |
IdP-Initiated SSO |
|
|
Verified Operation by Device |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
〇 |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
〇 |
Android - Native App |
|
TrustLogin Admin Page Configuration
-
Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Register Company App" screen and select "Commune (SAML)".
- Make a note of the "Identity Provider URL" value under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
- Enter the Commune community subdomain into the three input fields under "Service Provider Settings".
- Save by clicking the "Register" button.
Commune Configuration
- Open "Settings > Tool Integrations" on the admin screen and click the "Add" button under "SAML Authentication SP Settings".
- Configure each item as follows, then click the "Add" button.
IdP SSO Endpoint URL The "Identity Provider URL" obtained from TrustLogin IdP Certificate The string obtained by removing the --BEGIN CERTIFICATE-- and --END CERTIFICATE-- header lines and all line breaks from the "Certificate" obtained from TrustLogin
IdP User Identifier (NameIDFormat) Email address (emailAddress)
- Open "Settings > Community Settings", turn on "Advanced Settings", and configure the logout URL. Specify a URL that is not a URL within Commune.
https://portal.trustlogin.com/ is one example.
TrustLogin User Configuration
① When a User Adds the App via My Page
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "Commune (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter it and click the "Register" button.
②When an Administrator Adds a Member
- Search for and click the "Commune (SAML)" app in the "Admin Page > App" menu.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.
Creating a New User
- When a user not yet registered in Commune logs in via SAML, the account registration screen is displayed. Click the "Register" button.
- Set the display name and username, then click "Next" to complete account registration and log in to Commune.