How to Configure SAML Authentication for EQ Portal

Item

Details

Prior Confirmation

  • Prior configuration in EQ Portal is required.

  • An account must be created in advance in EQ Portal using the same email address as TrustLogin.

  • For the latest setup instructions, please check the manual provided by EQ Portal.

Name ID

Email address

Custom attribute Note: For instructions on how to configure a custom attribute, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)
Note: For setup instructions when using provisioning, see here

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

SAML Authentication Scope

Enabled for all users (SAML authentication only)

Other: Enabled for all users (both SAML authentication and password authentication available)

Notes

None in particular.

Table of Contents:

TrustLogin Admin Page Settings

EQ Portal Settings

TrustLogin Admin Page Settings (Continued)

TrustLogin User Settings

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "EQ Portal (SAML)".
    02.png

  3. Note down the value of "Identity Provider URL" under "Identity Provider Information", and download the certificate from the "Get Certificate" button.
    03.png

Now, switch to configuring the EQ Portal side.
Do not click the "Register" button yet — open the EQ Portal site in a separate window.

EQ Portal Settings

  1. Open "Settings" in the left menu and turn on the checkbox for "Enable Single Sign-On".
    04.png

  2. When you turn on "Enable Single Sign-On", the "SAML Authentication Settings" section expands. Configure each item as follows.
    Single Sign-On URL The "Identity Provider URL" obtained from TrustLogin
    Enable Signature Verification Turn on the checkbox and upload the "Certificate" obtained from TrustLogin using "File Upload"
    Entity ID Make a note of the value using the "Copy" button

    ACS URL

    Make a note of the value using the "Copy" button
    Single Sign-On Login Button Settings You can choose whether to display the Single Sign-On login button on the EQ Portal login screen. Please select according to your operational needs.
    Single Sign-On Test URL Make a note of the value using the "Copy" button
    User Registration Settings Select "Do Not Automatically Register"
    Group Information Update Settings Select "Do Not Update"

    05.png

  3. Click the "Update" button to save.
    06.png

Now return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure "Service Provider Settings" as follows.
    Login URL

    The "Single Sign-On Test URL" obtained from EQ Portal

    Entity ID The "Entity ID" obtained from EQ Portal
    ACS URL to Service The "ACS URL" obtained from EQ Portal

    07.png

  2. Click the "Register" button to save your settings.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "EQ Portal (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds a Member

  1. Search for and click the "EQ Portal (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for EQ Portal

Item

Details

Prior Confirmation

  • Prior configuration in EQ Portal is required.

  • An account must be created in advance in EQ Portal using the same email address as TrustLogin.

  • For the latest setup instructions, please check the manual provided by EQ Portal.

Name ID

Email address

Custom attribute Note: For instructions on how to configure a custom attribute, click here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)
Note: For setup instructions when using provisioning, see here

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

SAML Authentication Scope

Enabled for all users (SAML authentication only)

Other: Enabled for all users (both SAML authentication and password authentication available)

Notes

None in particular.

Table of Contents:

TrustLogin Admin Page Settings

EQ Portal Settings

TrustLogin Admin Page Settings (Continued)

TrustLogin User Settings

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "EQ Portal (SAML)".
    02.png

  3. Note down the value of "Identity Provider URL" under "Identity Provider Information", and download the certificate from the "Get Certificate" button.
    03.png

Now, switch to configuring the EQ Portal side.
Do not click the "Register" button yet — open the EQ Portal site in a separate window.

EQ Portal Settings

  1. Open "Settings" in the left menu and turn on the checkbox for "Enable Single Sign-On".
    04.png

  2. When you turn on "Enable Single Sign-On", the "SAML Authentication Settings" section expands. Configure each item as follows.
    Single Sign-On URL The "Identity Provider URL" obtained from TrustLogin
    Enable Signature Verification Turn on the checkbox and upload the "Certificate" obtained from TrustLogin using "File Upload"
    Entity ID Make a note of the value using the "Copy" button

    ACS URL

    Make a note of the value using the "Copy" button
    Single Sign-On Login Button Settings You can choose whether to display the Single Sign-On login button on the EQ Portal login screen. Please select according to your operational needs.
    Single Sign-On Test URL Make a note of the value using the "Copy" button
    User Registration Settings Select "Do Not Automatically Register"
    Group Information Update Settings Select "Do Not Update"

    05.png

  3. Click the "Update" button to save.
    06.png

Now return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure "Service Provider Settings" as follows.
    Login URL

    The "Single Sign-On Test URL" obtained from EQ Portal

    Entity ID The "Entity ID" obtained from EQ Portal
    ACS URL to Service The "ACS URL" obtained from EQ Portal

    07.png

  2. Click the "Register" button to save your settings.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "EQ Portal (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.

② When an Administrator Adds a Member

  1. Search for and click the "EQ Portal (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.