|
Item |
Details |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on setting up a custom attribute, see here |
||
|
SP-Side Configuration |
〇 |
Configured by the administrator |
|
Request the SP to configure this |
||
|
Provisioning |
Supports provisioning via API (account management possible in TrustLogin) |
|
|
Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not possible) |
||
|
〇 |
None (accounts are created individually in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
ー |
IdP-Initiated SSO |
|
|
Verified Operation by Device |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
ー |
iOS - Standard Browser (Safari) |
|
|
ー |
iOS - TrustLogin Mobile App Internal Browser |
|
|
〇 |
iOS - Native App |
|
|
ー |
Android - Standard Browser (Chrome) |
|
|
ー |
Android - TrustLogin Mobile App Internal Browser |
|
|
〇 |
Android - Native App |
|
|
SAML Authentication Scope |
ー |
Enabled for all users (SAML authentication only) |
| 〇 |
Other: Users (both SAML authentication and password authentication available); Administrators (password authentication only) |
|
|
Remarks |
|
|
|
Table of Contents: |
Configuring the TrustLogin Admin Page
- Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- On the "Register Corporate App" screen, search for and select "RemoteView (SAML)".
- Download the metadata by clicking the "Download Metadata" button under "Identity Provider Information".
- In "Service Provider Settings", enter your "TrustLogin Company ID" in the "ACS URL to the Service" field.
-
Save by clicking the "Register" button.
Configuring RemoteView
- Log in with an administrator account, and open the "Environment Settings" > "Common/Security Settings" > "SSO Integration Settings" item. Configure each item as follows.
SSO Integration Select "Use for All" Identity Provider Select "GMO TRUST LOGIN" Upload metadata File Upload the "metadata" obtained from TrustLogin Tenant ID Your TrustLogin "Company ID"
- Click the "Apply" button to save the settings.
Note: When the metadata is loaded successfully, the "Logout Page URL" will be automatically populated; however, the single logout function has not yet been implemented (as of June 2025). As a result, please be aware that logging out of RemoteView will display a SAML error.
Configuring TrustLogin Users
① When a User Adds the App from My Page
- On "My Page", click the "Add App" button.
- On the "Register App" screen, select "RemoteView (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter a new one, then click the "Register" button.
② When an Administrator Adds Members
- In the "Admin Page > Apps" menu, search for and click the "RemoteView (SAML)" app.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.
How to Log In
① When Logging In Using "RemoteView (SAML)"
When you launch "RemoteView (SAML)" from TrustLogin's My Page or the browser extension, you will be taken to the RemoteView login screen. Click "Log in with SSO", enter your email address on the next screen, and click the "Confirm" button to complete the login.
② When Using the Auxiliary App
We also provide an auxiliary app that lets you skip the steps of clicking "Log in with SSO" and entering your email address, as described in the login behavior in ①. Please register the "[For SAML Auxiliary Use] RemoteView" app to use it.
Note: The auxiliary app can only be used in a PC browser.
Add the app using the same procedure as a normal app registration, either as the administrator or by the user themselves.
② When Using the Mobile App
- Launch the mobile app, click "Log in with SSO", enter your email address on the next screen, and click the "Confirm" button.
- You will be taken to the TrustLogin authentication screen. Once you complete authentication, the login will be finished.
Note: If the screen does not display correctly after authentication, please log in again.
Note: If client authentication is configured, SSO is not available in the mobile app.