How to Configure SAML Authentication for ChatLuck (Smartphone App Version)

 Item

Details 

Pre-check

  • Prior configuration in ChatLuck is required.
  • You must set the same email address as your TrustLogin account for the "Login ID" in ChatLuck.
  • For the latest setup instructions, please check the manual provided by ChatLuck.
  • For the SAML configuration for the PC browser version, please check here.

Name ID

Email address

 

Custom attribute Note: For instructions on how to configure a custom attribute, click here

SP-side Configuration

Configured by the administrator

 

Request configuration from the SP

Provisioning

 

API-based Provisioning supported (account management available in TrustLogin)

 

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

SAML Authentication Scope

Enabled for all users (SAML authentication only)

Other:
Enabled for all users (users can choose to use SAML authentication together with password authentication)

Notes

  • If you are using client authentication, SSO is not available in the native app.

 

Table of Contents:

TrustLogin Admin Page Configuration 

ChatLuck Configuration

TrustLogin Admin Page Configuration (Continued)

TrustLogin User Configuration

SSO Authentication Method for the Native App

 

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Enterprise App" screen, search for and select "ChatLuck (SAML) [For Smartphone]".
    ChatLuck001.png

  3. Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.03__1_.png


Now, let's move on to the configuration on the ChatLuck side.
Do not click the "Register" button yet. Open ChatLuck in a separate window.

ChatLuck Configuration

  1. Log in with a system administrator account, and select "System Administrator Settings" from the "▼" button.
    ChatLuck03.png

  2. Under "System Settings > ChatLuck URL Settings", note down the "Smartphone App URL".
    2025-01-10_13-27-32.png

  3. Open "External Service Integration Settings > SAML Authentication Settings" and enter the following values for each item under "Smartphone App Version".
    ChatLuck004.png
    SAML Authentication Settings Select "Use"
    Allow Normal Login

    Please select according to your company's policy.

    Note: If you select "Do not allow", login with ID and password will no longer be possible. Please be careful.

    Access URL for ChatLuck

    The "Smartphone App URL" obtained in step 2.



  4. Enter the following values for each item under "SAML Authentication Settings" and click "Change".
    ChatLuck005.png

    Access URL The "IdP URL" obtained from TrustLogin
    SP Entity ID The "Issuer/Entity ID" obtained from TrustLogin
    X.509 Certificate

    Upload the "Certificate" obtained from TrustLogin



  5. After clicking the Change button, the "Settings Status" screen will be displayed. Scroll down to "External Service Integration Settings > SAML Authentication Settings > Smartphone App Version" and note down the "Access URL for ChatLuck".
    2025-01-10_19-01-13.png

 

TrustLogin Admin Page Configuration (Continued)

  1. In the "Service Provider Settings", enter the following values into the blank fields for "Entity ID" and "ACS URL for Service".
    Entity ID

    Enter the subdomain of the ChatLuck login URL

    Example login URL: https://[subdomain].chatluck.net/cgi-bin/chatlk/chat.cgi

    ACS URL for Service The "Access URL for ChatLuck" noted down in step 5 of "ChatLuck Configuration"

    ChatLuck.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a User Adds the App from My Page

  1. Click the "Add App" button in "My Page".
  2. On the "Register App" screen, select "ChatLuck (SAML) [For Smartphone]" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds Members

  1. In the "Admin Page > Apps" menu, search for and click the "ChatLuck (SAML) [For Smartphone]" app.
  2. Click "Add Member", select the users you want to add from the member list, and click the "Register" button to add them.

  3.  

SSO Authentication Method for the Native App

  1. Open ChatLuck in a PC browser and select "Smartphone" from the "▼" button.
    2025-01-10_19-08-52.png

  2. Display the QR code.ChatLuck07.png

  3. Open the ChatLuck native app, tap "Launch camera and scan URL from QR code", and scan the QR code displayed in step 2.
    Media (2).png

  4. After scanning the QR code, tap "Log in with SAML Authentication".
    Media (1).png


  5. You will be taken to the TrustLogin login screen. Log in to TrustLogin and use the app.

    Note: From the second login onward, tapping "Select from Registered URLs" and selecting the destination URL will take you to the screen in step 4, where you can log in using "Log in with SAML Authentication".
    Media (2) - Copy (1).png

    Media (3).png

How to Configure SAML Authentication for ChatLuck (Smartphone App Version)

 Item

Details 

Pre-check

  • Prior configuration in ChatLuck is required.
  • You must set the same email address as your TrustLogin account for the "Login ID" in ChatLuck.
  • For the latest setup instructions, please check the manual provided by ChatLuck.
  • For the SAML configuration for the PC browser version, please check here.

Name ID

Email address

 

Custom attribute Note: For instructions on how to configure a custom attribute, click here

SP-side Configuration

Configured by the administrator

 

Request configuration from the SP

Provisioning

 

API-based Provisioning supported (account management available in TrustLogin)

 

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

SAML Authentication Scope

Enabled for all users (SAML authentication only)

Other:
Enabled for all users (users can choose to use SAML authentication together with password authentication)

Notes

  • If you are using client authentication, SSO is not available in the native app.

 

Table of Contents:

TrustLogin Admin Page Configuration 

ChatLuck Configuration

TrustLogin Admin Page Configuration (Continued)

TrustLogin User Configuration

SSO Authentication Method for the Native App

 

TrustLogin Admin Page Configuration

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Enterprise App" screen, search for and select "ChatLuck (SAML) [For Smartphone]".
    ChatLuck001.png

  3. Note down the values of "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.03__1_.png


Now, let's move on to the configuration on the ChatLuck side.
Do not click the "Register" button yet. Open ChatLuck in a separate window.

ChatLuck Configuration

  1. Log in with a system administrator account, and select "System Administrator Settings" from the "▼" button.
    ChatLuck03.png

  2. Under "System Settings > ChatLuck URL Settings", note down the "Smartphone App URL".
    2025-01-10_13-27-32.png

  3. Open "External Service Integration Settings > SAML Authentication Settings" and enter the following values for each item under "Smartphone App Version".
    ChatLuck004.png
    SAML Authentication Settings Select "Use"
    Allow Normal Login

    Please select according to your company's policy.

    Note: If you select "Do not allow", login with ID and password will no longer be possible. Please be careful.

    Access URL for ChatLuck

    The "Smartphone App URL" obtained in step 2.



  4. Enter the following values for each item under "SAML Authentication Settings" and click "Change".
    ChatLuck005.png

    Access URL The "IdP URL" obtained from TrustLogin
    SP Entity ID The "Issuer/Entity ID" obtained from TrustLogin
    X.509 Certificate

    Upload the "Certificate" obtained from TrustLogin



  5. After clicking the Change button, the "Settings Status" screen will be displayed. Scroll down to "External Service Integration Settings > SAML Authentication Settings > Smartphone App Version" and note down the "Access URL for ChatLuck".
    2025-01-10_19-01-13.png

 

TrustLogin Admin Page Configuration (Continued)

  1. In the "Service Provider Settings", enter the following values into the blank fields for "Entity ID" and "ACS URL for Service".
    Entity ID

    Enter the subdomain of the ChatLuck login URL

    Example login URL: https://[subdomain].chatluck.net/cgi-bin/chatlk/chat.cgi

    ACS URL for Service The "Access URL for ChatLuck" noted down in step 5 of "ChatLuck Configuration"

    ChatLuck.png

  2. Save by clicking the "Register" button.

TrustLogin User Configuration

① When a User Adds the App from My Page

  1. Click the "Add App" button in "My Page".
  2. On the "Register App" screen, select "ChatLuck (SAML) [For Smartphone]" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds Members

  1. In the "Admin Page > Apps" menu, search for and click the "ChatLuck (SAML) [For Smartphone]" app.
  2. Click "Add Member", select the users you want to add from the member list, and click the "Register" button to add them.

  3.  

SSO Authentication Method for the Native App

  1. Open ChatLuck in a PC browser and select "Smartphone" from the "▼" button.
    2025-01-10_19-08-52.png

  2. Display the QR code.ChatLuck07.png

  3. Open the ChatLuck native app, tap "Launch camera and scan URL from QR code", and scan the QR code displayed in step 2.
    Media (2).png

  4. After scanning the QR code, tap "Log in with SAML Authentication".
    Media (1).png


  5. You will be taken to the TrustLogin login screen. Log in to TrustLogin and use the app.

    Note: From the second login onward, tapping "Select from Registered URLs" and selecting the destination URL will take you to the screen in step 4, where you can log in using "Log in with SAML Authentication".
    Media (2) - Copy (1).png

    Media (3).png