|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure a custom attribute, click here |
||
|
SP-side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
API-based Provisioning supported (account management available in TrustLogin) |
|
|
SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
ー |
IdP-Initiated SSO |
|
|
Verified Operation by Device |
ー |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
ー |
iOS - Standard Browser (Safari) |
|
|
ー |
iOS - TrustLogin Mobile App In-App Browser |
|
|
〇 |
iOS - Native App |
|
|
ー |
Android - Standard Browser (Chrome) |
|
|
ー |
Android - TrustLogin Mobile App In-App Browser |
|
|
〇 |
Android - Native App |
|
|
SAML Authentication Scope |
ー |
Enabled for all users (SAML authentication only) |
| 〇 |
Other: |
|
|
Notes |
|
|
|
Table of Contents: TrustLogin Admin Page Configuration |
TrustLogin Admin Page Configuration
-
Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- On the "Register Enterprise App" screen, search for and select "ChatLuck (SAML) [For Smartphone]".
- Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
Now, let's move on to the configuration on the ChatLuck side.
Do not click the "Register" button yet. Open ChatLuck in a separate window.
ChatLuck Configuration
- Log in with a system administrator account, and select "System Administrator Settings" from the "▼" button.
- Under "System Settings > ChatLuck URL Settings", note down the "Smartphone App URL".
- Open "External Service Integration Settings > SAML Authentication Settings" and enter the following values for each item under "Smartphone App Version".
SAML Authentication Settings Select "Use" Allow Normal Login Please select according to your company's policy.
Note: If you select "Do not allow", login with ID and password will no longer be possible. Please be careful.
Access URL for ChatLuck The "Smartphone App URL" obtained in step 2.
- Enter the following values for each item under "SAML Authentication Settings" and click "Change".
Access URL The "IdP URL" obtained from TrustLogin SP Entity ID The "Issuer/Entity ID" obtained from TrustLogin X.509 Certificate Upload the "Certificate" obtained from TrustLogin
- After clicking the Change button, the "Settings Status" screen will be displayed. Scroll down to "External Service Integration Settings > SAML Authentication Settings > Smartphone App Version" and note down the "Access URL for ChatLuck".
TrustLogin Admin Page Configuration (Continued)
- In the "Service Provider Settings", enter the following values into the blank fields for "Entity ID" and "ACS URL for Service".
Entity ID Enter the subdomain of the ChatLuck login URL
Example login URL: https://[subdomain].chatluck.net/cgi-bin/chatlk/chat.cgi
ACS URL for Service The "Access URL for ChatLuck" noted down in step 5 of "ChatLuck Configuration"
- Save by clicking the "Register" button.
TrustLogin User Configuration
① When a User Adds the App from My Page
- Click the "Add App" button in "My Page".
- On the "Register App" screen, select "ChatLuck (SAML) [For Smartphone]" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
② When an Administrator Adds Members
- In the "Admin Page > Apps" menu, search for and click the "ChatLuck (SAML) [For Smartphone]" app.
- Click "Add Member", select the users you want to add from the member list, and click the "Register" button to add them.
SSO Authentication Method for the Native App
- Open ChatLuck in a PC browser and select "Smartphone" from the "▼" button.
- Display the QR code.
- Open the ChatLuck native app, tap "Launch camera and scan URL from QR code", and scan the QR code displayed in step 2.
- After scanning the QR code, tap "Log in with SAML Authentication".
-
You will be taken to the TrustLogin login screen. Log in to TrustLogin and use the app.
Note: From the second login onward, tapping "Select from Registered URLs" and selecting the destination URL will take you to the screen in step 4, where you can log in using "Log in with SAML Authentication".