How to Configure SAML Authentication for uSonar

Item

Details

Pre-check

  • Advance configuration in uSonar is required.

  • You must register the same email address as your TrustLogin account as the User ID in uSonar.

  • For the latest configuration steps, please refer to the manual provided by uSonar.

Name ID

Email address

Custom attribute Note: For instructions on setting up a custom attribute, see here

SP-Side Configuration

Configured by the administrator

Request the SP to configure this

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not possible)

None (accounts are created individually in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

※1

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

※2

Android - Standard Browser (Chrome)

※3

Android - TrustLogin Mobile App Internal Browser

Android - Native App

SAML Authentication Scope

Enabled for all users (SAML authentication only)

Notes

  • Admin Sonar is not available on iOS - TrustLogin Mobile App Internal Browser. (※1)
  • Plan Sonar is not available on Android - Standard Browser (Chrome) and Android - TrustLogin Mobile App Internal Browser. (※2)(※3)
  • The recommended browsers are as follows:
    ・Google Chrome (latest version)
    ・Firefox (latest version)
  • SSO authentication is available via the native app "mSonar."
  • Once you log in via the native app, your device information will be registered in the "Mobile Registration Status List." To log in from a different device, you must delete the mobile registration status.

Table of Contents:

TrustLogin Admin Page Settings

TrustLogin User Settings

How to Log In

How to Log In via the Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "uSonar (SAML)."
    USonar10.png

  3. Download the metadata using the "Download Metadata" button under "Identity Provider Information."
    03.png

  4. Set the login URL of the service you want to log in to as the "Login URL" in "Service Provider Settings."
    Admin Sonar https://go.usonar.jp/sso
    Guide Sonar https://msonar.go.usonar.jp/login/sso
    Plan Sonar https://plansonar.go.usonar.jp/auth/sso

    USonar01.png
    Note: If there are multiple services you want to log in to, you can set up a "Bookmark Template" to
    access and log in to them from TrustLogin.

    Example: Set the URL of "Admin Sonar" for "uSonar (SAML)"
        and set the URLs of "Guide Sonar" and "Plan Sonar" in the "Bookmark Template"

    For instructions on setting up the "Bookmark Template," see here.

  5. Save by clicking the "Register" button.

  6. Send the metadata you obtained to your uSonar Co., Ltd. representative and request that they complete the configuration.

  7. Once uSonar Co., Ltd. notifies you that the configuration is complete and that the "SSO Login Code" has been issued, add "uSonar (SAML)" and try SSO from either your TrustLogin My Page or the uSonar login URL.

TrustLogin User Settings

① When a user adds the app from My Page

  1. On "My Page," click the "Add App" button.
  2. On the "Register App" screen, select "uSonar (SAML)," and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter a new one, then click the "Register" button.

② When an administrator adds members

  1. In the "Admin Page > App" menu, search for and click the "uSonar (SAML)" app.
  2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.

How to Log In

① When logging in via "uSonar (SAML)"

  1. Run "uSonar (SAML)" (or a registered Bookmark Template) from your TrustLogin My Page or browser extension, then enter the "SSO Login Code" issued by uSonar Co., Ltd. and click "SSO Authentication."
    USonar02.png

② When using the helper app

We also provide helper apps that let you skip entering the "SSO Login Code" and clicking the "SSO Authentication" button, as described in ①. Please register "【SAML Helper】Admin Sonar," "【SAML Helper】Plan Sonar," and "【SAML Helper】Guide Sonar" as corporate apps to use them.

Note: The helper apps can only be used on PC browsers.

Note: If you want to configure multiple helper apps, register them one at a time by following the steps below.

  1. Search on the "Register Corporate App" screen and select one of "【SAML Helper】Admin Sonar," "【SAML Helper】Plan Sonar," or "【SAML Helper】Guide Sonar."
    USonar11.png

  2. Save by clicking the "Register" button.

  3. Add the app following the same steps as for a regular app registration, whether you are the administrator or the user yourself.

  4. Set your uSonar "SSO Login Code" as the "SSO Login Code," then click "Save."
    USonar12.png

How to Log In via the Native App

  1. Open the native app and tap "Use SSO."
    USonar05.png

  2. Enter the "SSO Login Code" and tap "Log In."
    If you are redirected to TrustLogin, please log in to TrustLogin.
    USonar04.png

How to Configure SAML Authentication for uSonar

Item

Details

Pre-check

  • Advance configuration in uSonar is required.

  • You must register the same email address as your TrustLogin account as the User ID in uSonar.

  • For the latest configuration steps, please refer to the manual provided by uSonar.

Name ID

Email address

Custom attribute Note: For instructions on setting up a custom attribute, see here

SP-Side Configuration

Configured by the administrator

Request the SP to configure this

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not possible)

None (accounts are created individually in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

※1

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

※2

Android - Standard Browser (Chrome)

※3

Android - TrustLogin Mobile App Internal Browser

Android - Native App

SAML Authentication Scope

Enabled for all users (SAML authentication only)

Notes

  • Admin Sonar is not available on iOS - TrustLogin Mobile App Internal Browser. (※1)
  • Plan Sonar is not available on Android - Standard Browser (Chrome) and Android - TrustLogin Mobile App Internal Browser. (※2)(※3)
  • The recommended browsers are as follows:
    ・Google Chrome (latest version)
    ・Firefox (latest version)
  • SSO authentication is available via the native app "mSonar."
  • Once you log in via the native app, your device information will be registered in the "Mobile Registration Status List." To log in from a different device, you must delete the mobile registration status.

Table of Contents:

TrustLogin Admin Page Settings

TrustLogin User Settings

How to Log In

How to Log In via the Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Corporate App" screen and select "uSonar (SAML)."
    USonar10.png

  3. Download the metadata using the "Download Metadata" button under "Identity Provider Information."
    03.png

  4. Set the login URL of the service you want to log in to as the "Login URL" in "Service Provider Settings."
    Admin Sonar https://go.usonar.jp/sso
    Guide Sonar https://msonar.go.usonar.jp/login/sso
    Plan Sonar https://plansonar.go.usonar.jp/auth/sso

    USonar01.png
    Note: If there are multiple services you want to log in to, you can set up a "Bookmark Template" to
    access and log in to them from TrustLogin.

    Example: Set the URL of "Admin Sonar" for "uSonar (SAML)"
        and set the URLs of "Guide Sonar" and "Plan Sonar" in the "Bookmark Template"

    For instructions on setting up the "Bookmark Template," see here.

  5. Save by clicking the "Register" button.

  6. Send the metadata you obtained to your uSonar Co., Ltd. representative and request that they complete the configuration.

  7. Once uSonar Co., Ltd. notifies you that the configuration is complete and that the "SSO Login Code" has been issued, add "uSonar (SAML)" and try SSO from either your TrustLogin My Page or the uSonar login URL.

TrustLogin User Settings

① When a user adds the app from My Page

  1. On "My Page," click the "Add App" button.
  2. On the "Register App" screen, select "uSonar (SAML)," and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter a new one, then click the "Register" button.

② When an administrator adds members

  1. In the "Admin Page > App" menu, search for and click the "uSonar (SAML)" app.
  2. Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.

How to Log In

① When logging in via "uSonar (SAML)"

  1. Run "uSonar (SAML)" (or a registered Bookmark Template) from your TrustLogin My Page or browser extension, then enter the "SSO Login Code" issued by uSonar Co., Ltd. and click "SSO Authentication."
    USonar02.png

② When using the helper app

We also provide helper apps that let you skip entering the "SSO Login Code" and clicking the "SSO Authentication" button, as described in ①. Please register "【SAML Helper】Admin Sonar," "【SAML Helper】Plan Sonar," and "【SAML Helper】Guide Sonar" as corporate apps to use them.

Note: The helper apps can only be used on PC browsers.

Note: If you want to configure multiple helper apps, register them one at a time by following the steps below.

  1. Search on the "Register Corporate App" screen and select one of "【SAML Helper】Admin Sonar," "【SAML Helper】Plan Sonar," or "【SAML Helper】Guide Sonar."
    USonar11.png

  2. Save by clicking the "Register" button.

  3. Add the app following the same steps as for a regular app registration, whether you are the administrator or the user yourself.

  4. Set your uSonar "SSO Login Code" as the "SSO Login Code," then click "Save."
    USonar12.png

How to Log In via the Native App

  1. Open the native app and tap "Use SSO."
    USonar05.png

  2. Enter the "SSO Login Code" and tap "Log In."
    If you are redirected to TrustLogin, please log in to TrustLogin.
    USonar04.png