|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For how to configure custom attributes, see here |
||
|
SP Configuration |
|
Configured by the administrator |
| 〇 |
Request configuration from the SP |
|
|
Provisioning |
API-based Provisioning supported (account management available in TrustLogin) |
|
|
SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Device Compatibility |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Default Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
ー |
iOS - Native App |
|
|
〇 |
Android - Default Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
ー |
Android - Native App |
|
|
SAML Authentication Scope |
ー |
Enabled for all users (SAML authentication only) |
| 〇 |
Enabled for all users (SAML authentication and password authentication can be used together) |
|
|
Notes |
|
|
|
Table of Contents: |
Preparation
In Rakuraku Kintai, go to "Settings > Employee Settings", select an employee, and click "Edit" at the bottom left of the screen.
On the "Edit Employee" screen that appears, click the "▽" at the bottom right of "Basic Information".
Enter your TrustLogin email address in "Single Sign-On ID" and click "Save".
TrustLogin Admin Page Settings
- Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Register Company App" screen and select "[New] Rakuraku Kintai (SAML)".
- Download the metadata from the "Download Metadata" button under "Identity Provider Information".
- Enter the Rakuraku Kintai "Customer ID" in the blank field under "Service Provider Settings".
- Click the "Register" button to save.
- Send the obtained metadata to your representative at RAKUS Co., Ltd. and request that they complete the configuration.
- Once your representative at RAKUS Co., Ltd. confirms that the metadata has been registered, assign users to "[New] Rakuraku Kintai (SAML)" and try the SSO connection.
TrustLogin User Settings
① When a user adds the app from My Page
Note: The SAML app must be configured by an administrator in advance.
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "[New] Rakuraku Kintai (SAML)" and click the "Next" button in the upper right of the screen.
-
If you want to change the "Display Name", enter it and click the "Register" button.
② When an administrator adds members
- Search for and click the "[New] Rakuraku Kintai (SAML)" app in the "Admin Page > App" menu.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.