|
Item |
Description |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For how to configure custom attributes, see here |
||
|
SP-side configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
Supports provisioning via API (accounts can be managed in GMO TrustLogin) |
|
|
Supports SAML JIT provisioning (accounts can be managed in GMO TrustLogin; users cannot be deleted) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified device compatibility |
〇 |
PC - Browser |
|
〇 |
PC - Desktop app (Fileforce Drive) |
|
|
〇 |
iOS - Standard browser (Safari) |
|
|
〇 |
iOS - TrustLogin mobile app internal browser |
|
|
〇 |
iOS - Native app (Fileforce(E)) |
|
|
〇 |
Android - Standard browser (Chrome) |
|
|
〇 |
Android - TrustLogin mobile app internal browser |
|
|
ー |
Android - Native app |
|
TrustLogin Admin Page Configuration
- Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
- On the "Register Corporate App" screen, search for and select "Fileforce(SAML)."
- Make a note of the "IdP URL" under "Identity Provider Information," then download the certificate from "Get Certificate."
- After downloading the certificate, change the certificate file's extension to "cer" and save it.
- In "Service Provider Settings," enter your Fileforce "site name" in the four blank fields: "Login URL," "Entity ID," "ACS URL for the service," and "Logout URL."
Enter the site name portion from the login ID used when logging in, in the format user ID@site name. Please check the email you received from Fileforce at the time of activation for your user ID and site name.
- Click the "Register" button to save.
Fileforce Configuration
- Log in with an administrator account and open "Tools > User Management > Admin Console" at the top right.
- Open "Single Sign-On Settings."
- Click "Start Editing."
- Check "Enable Single Sign-On" and configure the fields as follows.
Login page URL The IdP URL you noted from TrustLogin Logout page URL Enter https://portal.trustlogin.com/user/
Federation ID type Select "Email address" Authentication verification Upload the certificate downloaded from TrustLogin with its extension changed to "cer"
- Click the "Save" button, then click "Finish Editing."
How to Configure SSO for the Native App
Fileforce supports an iOS mobile app. Both administrators and users registered in Fileforce can use it via the method below.
- Download the Fileforce(E) app (icon shown below) from the iOS App Store.
-
Open the downloaded mobile app and tap "Add Profile" to launch the camera.
- Log in to Fileforce on your PC and open "Tools > Applications."
- Select "Apps," then use the mobile app's camera to scan the "Login Type: Single Sign-On" QR code shown on screen.
- Save the profile.
- Select the saved profile.
- Log in to TrustLogin and confirm that login succeeds.
TrustLogin User Configuration
① When a user adds it from My Page
- On "My Page," click the "Add App" button.
- On the "Register App" screen, select "Fileforce(SAML)," then click the "Next" button at the top right of the screen.
- If you want to change the "Display Name," enter it, then click the "Register" button.
- Click the app on "My Page" or in the "Extension," and confirm that login succeeds.
② When an administrator adds members
- On the "Admin Page > Apps" menu, search for and click the "Fileforce(SAML)" app.
- Click "Add Member," select the users to add from the member list, and click the "Register" button to add them.