|
Item |
Description |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on configuring custom attributes, see here |
||
|
SP-Side Settings |
〇 |
Configured by the administrator |
|
Request the SP to configure the settings |
||
|
Provisioning |
Supports provisioning via API (account management available from TrustLogin) |
|
|
Supports SAML JIT provisioning (account management available from TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
Note 1 |
IdP-Initiated SSO |
|
|
Verified Operation by Device |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
Note 2 |
iOS - Standard Browser (Safari) |
|
|
× |
iOS - TrustLogin Mobile App Internal Browser |
|
|
〇 |
iOS - Native App |
|
|
Note 2 |
Android - Standard Browser (Chrome) |
|
|
× |
Android - TrustLogin Mobile App Internal Browser |
|
|
〇 |
Android - Native App |
|
Note 1: IdP-Initiated SSO is supported on PC only.
Note 2: For how to log in from a mobile standard browser, see “How to Log In from a Mobile Standard Browser” below.
TrustLogin Admin Page Settings
- Log in to TrustLogin, open the “Admin Page > Apps” menu, and click the “Register App” button at the top right of the screen.
- On the “Register Corporate App” screen, search for and select “e-Sales Manager Remix CLOUD (SAML).”
- Note down the “IdP URL” under “Identity Provider Information,” and download the certificate from “Get Certificate.” (You will need this later when configuring the e-Sales Manager side.)
- In the “Service Provider Settings” section, enter values into the 3 blank fields for “Entity ID” and “ACS URL for Service” as shown in the example below.
(Example) If the SP service URL is “https://xxxxx.softbrain.co.jp/×××××/esales-pc,” enter “xxxxx.softbrain.co.jp/×××××/” into all 3 blank fields.
- Click the “Register” button to save.
TrustLogin User Settings
① When a User Adds the App from My Page
- Click the “Add App” button on “My Page.”
- On the “Register App” screen, select “e-Sales Manager Remix CLOUD (SAML),” then click the “Next” button at the top right of the screen.
- If you want to change the “Display Name,” enter it, then click the “Register” button.
② When an Administrator Adds a Member
- In the “Admin Page > Apps” menu, search for and click the “e-Sales Manager Remix CLOUD (SAML)” app.
- Click “Add Member,” select the user to add from the member list, and click the “Register” button to add them.
e-Sales Manager Settings
- Log in with an administrator account and open “Admin Menu > External System Integration > SAML.”
- Configure each item as follows.
Note: If the settings are incorrect when you enable SAML authentication, you will be unable to log in to e-Sales Manager, so please be careful.
Enable Check the targets for which you want to enable SAML authentication: “PC Version” and “Smartphone Version.”
Note: To use the smartphone version, users must be assigned a mobile license.Linked Attribute Select “email” from the dropdown,
and select the radio button for “The linked attribute is located in the NameIdentifier element of the Subject statement.”
Issuer (Entity ID) Set the portion of the SP service URL that comes before “esales-pc.”
(Example) If the SP service URL is “https://xxxxx.softbrain.co.jp/×××××/esales-pc,” set it to “https://xxxxx.softbrain.co.jp/×××××/”
Identity Provider Certificate Upload the certificate downloaded from TrustLogin Identity Provider Login URL The “IdP URL” you noted down from TrustLogin Identity Provider Logout URL Enter the URL to redirect to after logging out.
Here, we use https://portal.trustlogin.com/.
- Click the “Complete Settings” button to save.
How to Log In from a Mobile Standard Browser
- To log in via SAML using a mobile standard browser (iOS: Safari / Android: Chrome),
open the URL created by changing the end of the SP service URL from esales-pc to esales-bp.
Example: https://xxxxx.softbrain.co.jp/×××××/esales-bp
- If you are not logged in to TrustLogin, you will be redirected to the TrustLogin login page, so please log in there.
If you are already logged in to TrustLogin, you will be redirected directly to the smartphone version of e-Sales Manager Remix CLOUD.
Note: If you open this URL via a mobile standard browser through the TrustLogin mobile app, it will display the PC version instead, so please be aware.