How to Configure SAML Authentication for GUARDIANWALL

Item

Details

Pre-check

  • Prior configuration in GUARDIANWALL is required.

  • After configuring SAML authentication, you must create a SAML login user in GUARDIANWALL using the same email address as your TrustLogin account.

  • For the latest configuration steps, please refer to the manual provided by GUARDIANWALL.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

SAML Authentication Scope

Enabled for all users (SAML authentication only)

Other:
Enabled only for users to whom SAML authentication has been applied on the SP

Notes

None.

Table of Contents:

TrustLogin Admin Page Settings

GUARDIANWALL Settings

TrustLogin Admin Page Settings (Continued)

TrustLogin User Settings

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "GUARDIANWALL (SAML)".

  3. Download the metadata using the "Download Metadata" button under "Identity Provider Information".03.png

    Now, proceed to the GUARDIANWALL settings.
    Do not click the "Register" button yet; open GUARDIANWALL in a separate window.

GUARDIANWALL Settings

  1. Log in to the admin screen and click "Settings" in the upper right of the screen.

  2. Click "Account Management > Security".

  3. Copy and note down the "Application ID" and "Response URL" under "Single Sign-On", and configure each item as follows.
    SAML Authentication Change to "On"
    IdP Metadata (Note:) Upload the metadata obtained from TrustLogin via "Choose File"



  4. Save by clicking the "Update" button.


  5. Confirm that "Security settings updated." is displayed.

  6. Click "Account Management > Account".


  7. Click "New Registration".


  8. Configure "Account Information" as follows.
    Account Name An account with the same email address as your TrustLogin account
    Alias Optional
    Authentication Type Select "SAML Authentication"
    Note: Please configure the various permission settings to match your environment.



  9. Save by clicking the "Register" button.


  10. Confirm that the account has been registered.

Now, return to the TrustLogin Admin Page.

TrustLogin Admin Page Settings (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "Application ID" noted from GUARDIANWALL
    ACS URL to the Service The "Response URL" noted from GUARDIANWALL



  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "App Registration" screen, select "GUARDIANWALL (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

② When an Administrator Adds Members

  1. Search for and click the "GUARDIANWALL (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for GUARDIANWALL

Item

Details

Pre-check

  • Prior configuration in GUARDIANWALL is required.

  • After configuring SAML authentication, you must create a SAML login user in GUARDIANWALL using the same email address as your TrustLogin account.

  • For the latest configuration steps, please refer to the manual provided by GUARDIANWALL.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

SAML Authentication Scope

Enabled for all users (SAML authentication only)

Other:
Enabled only for users to whom SAML authentication has been applied on the SP

Notes

None.

Table of Contents:

TrustLogin Admin Page Settings

GUARDIANWALL Settings

TrustLogin Admin Page Settings (Continued)

TrustLogin User Settings

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "GUARDIANWALL (SAML)".

  3. Download the metadata using the "Download Metadata" button under "Identity Provider Information".03.png

    Now, proceed to the GUARDIANWALL settings.
    Do not click the "Register" button yet; open GUARDIANWALL in a separate window.

GUARDIANWALL Settings

  1. Log in to the admin screen and click "Settings" in the upper right of the screen.

  2. Click "Account Management > Security".

  3. Copy and note down the "Application ID" and "Response URL" under "Single Sign-On", and configure each item as follows.
    SAML Authentication Change to "On"
    IdP Metadata (Note:) Upload the metadata obtained from TrustLogin via "Choose File"



  4. Save by clicking the "Update" button.


  5. Confirm that "Security settings updated." is displayed.

  6. Click "Account Management > Account".


  7. Click "New Registration".


  8. Configure "Account Information" as follows.
    Account Name An account with the same email address as your TrustLogin account
    Alias Optional
    Authentication Type Select "SAML Authentication"
    Note: Please configure the various permission settings to match your environment.



  9. Save by clicking the "Register" button.


  10. Confirm that the account has been registered.

Now, return to the TrustLogin Admin Page.

TrustLogin Admin Page Settings (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "Application ID" noted from GUARDIANWALL
    ACS URL to the Service The "Response URL" noted from GUARDIANWALL



  2. Save by clicking the "Register" button.

TrustLogin User Settings

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page".
  2. On the "App Registration" screen, select "GUARDIANWALL (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name", enter it and click the "Register" button.

② When an Administrator Adds Members

  1. Search for and click the "GUARDIANWALL (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.