Item |
Description |
|
|---|---|---|
Prerequisites |
|
|
| Name ID | 〇 | Email address |
| Custom attribute Note: For information on how to configure a custom attribute, see here | ||
| SP-Side Configuration | 〇 | Configured by the administrator |
| Request the SP to configure the settings | ||
| Provisioning | Supports API-based provisioning (accounts can be managed in TrustLogin) | |
| Supports SAML JIT provisioning (accounts can be managed in TrustLogin; user deletion not supported) | ||
| 〇 | None (accounts are created in each system) | |
| Access Method | 〇 | SP-Initiated SSO |
| 〇 | IdP-Initiated SSO | |
| Verified Operation by Device | 〇 | PC - Browser |
| ー | PC - Desktop app | |
| 〇 | iOS - Standard browser (Safari) | |
| 〇 | iOS - TrustLogin mobile app in-app browser | |
| ー | iOS - Native app | |
| 〇 | Android - Standard browser (Chrome) | |
| 〇 | Android - TrustLogin mobile app in-app browser | |
| ー | Android - Native app | |
| SAML Authentication Scope | ー | Enabled for all users (SAML authentication only) |
| 〇 | Enabled only for users to whom SAML authentication has been applied on the SP side | |
Notes |
|
|
TrustLogin Admin Page Configuration
- Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Corporate App Registration" screen and select "IT Expert Services SaaS Management (SAML)".
- Download the metadata by clicking the "Download Metadata" button under "Identity Provider Information".
Now, switch to the configuration on the IT Expert Services SaaS Management side.
Do not click the "Register" button yet; open IT Expert Services SaaS Management in a separate window.
IT Expert Services SaaS Management Configuration
-
Log in to the account management screen of IT Expert Services SaaS Management and open "Organization Settings > Security".
-
Click "Set up SAML SSO".
-
Configure the following settings in "SAML SSO Configuration" and click "Save" to save the settings.
Entity ID Copy and keep a record of this ACS URL Copy and keep a record of this Upload Metadata Upload the "metadata" you saved from TrustLogin
Return to the TrustLogin Admin Page again.
TrustLogin Admin Page Configuration (Continued)
-
Configure the "Service Provider Settings" as follows.
Entity ID The "Entity ID" you saved from IT Expert Services SaaS Management ACS URL for the Service The "ACS URL" you saved from IT Expert Services SaaS Management
- Click the "Register" button to save.
- Since a connection test will be performed in the IT Expert Services SaaS Management settings later, add the administrator who is performing this configuration as a member of the SAML app you created.
In the "Admin Page > Apps" menu, search for the "IT Expert Services SaaS Management (SAML)" app, and use "Add Member" to add the administrator account.
Return to the account management screen of IT Expert Services SaaS Management again.
IT Expert Services SaaS Management Configuration (Continued)
-
Click "Connection Test (Navigate to External Site)" at the bottom of the page to run the connection test.
- If the connection test succeeds, the message "Connection test succeeded." will be displayed.
Click "Enable" to activate the SAML connection.
-
On the "Security" screen, click "Bulk Enable Members".
-
Select the members for whom you want to enable SAML SSO, and click "Enable".
-
A notice will be displayed. If there is no issue with the notice, click "Enable".
SAML SSO will be enabled, and the added members will be able to log in via SAML. -
If you want to disable SAML SSO, you can disable SSO for individual members from "Bulk Disable Members".
TrustLogin User Configuration
① When a User Adds the App from My Page
Note: The administrator must have already configured the SAML app in advance.
- On "My Page", click the "Add App" button.
- On the "App Registration" screen, select "IT Expert Services SaaS Management (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter a new one, then click the "Register" button.
② When an Administrator Adds Members
- In the "Admin Page > Apps" menu, search for the "IT Expert Services SaaS Management (SAML)" app and click it.
- Click "Add Member", select the users to add from the member list, and click the "Register" button to add them.
SP-Initiated Login Method
- Open the login screen of IT Expert Services SaaS Management and click "Log in with SAML SSO".
- Enter your email address and click the "Log in" button to log in via SAML SSO.