Item |
Details |
|
|---|---|---|
Pre-check |
|
|
| Name ID | 〇 | Email address |
| Custom attribute Note: For instructions on how to configure custom attributes, seehere | ||
| SP-Side Settings | 〇 | Configured by the administrator |
| Request the SP to configure settings | ||
| Provisioning | Supportsprovisioningvia API (account management possible in TrustLogin) | |
| 〇 | Supports SAML JITprovisioning(account management possible in TrustLogin; user deletion not supported) | |
| None (accounts are created individually in each system) | ||
| Access Method | 〇 | SP-Initiated SSO |
| 〇 | IdP-Initiated SSO | |
| Verified Operation Status by Device | 〇 | PC - Browser |
| ー | PC - Desktop App | |
| 〇 | iOS - Standard Browser (Safari) | |
| 〇 | iOS - TrustLogin Mobile App In-App Browser | |
| 〇 | iOS - Native App (Lucidchart, Lucidspark) | |
| 〇 | Android - Standard Browser (Chrome) | |
| 〇 | Android - TrustLogin Mobile App In-App Browser | |
| 〇 |
Android - Native App (Lucidchart, Lucidspark) |
|
| Scope of SAML Authentication | ー | Enabled for all users (SAML authentication only) |
| 〇 | Enabled for all users (can choose to use SAML authentication together with password authentication) | |
Notes |
|
|
|
Table of Contents: TrustLogin Admin Page Settings |
TrustLogin Admin Page Settings
- Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Register Enterprise App" screen and select "Lucid (SAML)".
- Download the metadata from the "Download Metadata" button under "Identity Provider Information".
At this point, switch to configuring the Lucid side.
Do not click the "Register" button yet — open Lucid in a separate window.
Lucid Settings
- Open the admin screen and select "App Integrations > General > SAML > Settings".
-
Set an arbitrary domain for the "Lucid Sign-in URL" domain, then click "Save Changes". Make a note of the domain you set here, as you will enter it in TrustLogin later.
Under "Add Identity Provider +", upload the metadata you saved from TrustLogin.
Now, return to the TrustLogin Admin Page.
TrustLogin Admin Page Settings (Continued)
- In the "Service Provider Settings" section, enter the domain you set in Lucid into the blank "Login URL" and "Service ACS URL" fields.
- Click the "Register" button to save.
- Use "Add Member" to add and assign the currently logged-in user. Note: This will be used later for testing SSO.
Return to Lucid again.
Lucid Settings (Continued)
-
Click "Test SAML Connection" to run the SSO test.
- If the following screen is displayed, the connection test was successful.
- If necessary, configure the "Domain Management" settings. For details, please see here.
-
In "Security > Authentication", select the sign-in method for users and the default login method under "Default Setting", then click "Save Changes".
Note: If you uncheck "Allow email and password" under "User Sign-in", users will no longer be able to log in with a password.
TrustLogin User Settings
① When a User Adds the App via My Page
Note: The administrator must have configured the SAML app in advance.
- Click the "Add App" button in "My Page".
- On the "Register App" screen, select "Lucid (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
② When an Administrator Adds a Member
- In the "Admin Page > Apps" menu, search for and click the "Lucid (SAML)" app.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.
How to Log In via the Mobile App
- Open the mobile app and tap "Log In".
-
Tap "Sign in with SSO".
-
On the Lucid SSO screen, enter the domain you set, and log in.