How to Configure SAML Authentication for Create!Web Flow Cloud

Item

Details

Pre-check

  • Prior configuration in Create!Web Flow Cloud is required.

  • You must have already created an account in Create!Web Flow Cloud using the same email address as your TrustLogin account as the login ID.

  • Please refer to the manual provided by Create!Web Flow Cloud for the latest configuration steps.

  • For the operating environment of Create!Web Flow Cloud, please see here.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Create!Web Flow Cloud (SAML)".
    02.png

  3. Note the value of "Identity Provider URL" in "Identity Provider Information", and download the certificate using "Get Certificate".
    03.png

Now, switch to configuring the Create!Web Flow Cloud side.
Do not click the "Register" button yet — open Create!Web Flow Cloud in a separate window.

Create!Web Flow Cloud Settings

  1. Log in with administrator privileges and open "Admin > System Settings".
    04.png

  2. Open "Login Authentication".
    05.png

  3. Configure each item on the login authentication screen as follows.
    Authentication Method Select "SAML Authentication"
    Identity Provider Login URL The "Identity Provider URL" noted from TrustLogin
    Identity Provider Logout URL https://portal.trustlogin.com/
    Certificate Upload the "Certificate" downloaded from TrustLogin
    Service Provider Entity ID https://[your contract domain].createwebflow-cloud.jp/XFV20
    Note: Your contract domain is the subdomain portion of your Create!Web Flow Cloud URL.

    06.png

    We recommend noting down the URL inside the blue box below "Authentication Method", as it allows you to log in using standard login if a SAML authentication configuration error prevents you from logging in.

  4. Download the metadata using the "Download" button to the right of "Service Provider Entity ID", and click "Save".
    07.png

  5. Return to the System Settings screen and click the "Apply Settings" button to apply the configuration.
    08.png
    09.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Upload the metadata downloaded from Create!Web Flow Cloud to "Metadata" in "Service Provider Settings".
    10.png

  2. Click the "Register" button to save.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Create!Web Flow Cloud (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.
  4. Click the app on "My Page" or in the "browser extension" and check that login succeeds.

② When an Administrator Adds Members

  1. Search for and click the "Create!Web Flow Cloud (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Create!Web Flow Cloud

Item

Details

Pre-check

  • Prior configuration in Create!Web Flow Cloud is required.

  • You must have already created an account in Create!Web Flow Cloud using the same email address as your TrustLogin account as the login ID.

  • Please refer to the manual provided by Create!Web Flow Cloud for the latest configuration steps.

  • For the operating environment of Create!Web Flow Cloud, please see here.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP-side Configuration

Configured by the administrator

Request configuration from the SP

Provisioning

API-based Provisioning supported (account management available in TrustLogin)

SAML JIT Provisioning supported (account management available in TrustLogin; user deletion not supported)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Create!Web Flow Cloud (SAML)".
    02.png

  3. Note the value of "Identity Provider URL" in "Identity Provider Information", and download the certificate using "Get Certificate".
    03.png

Now, switch to configuring the Create!Web Flow Cloud side.
Do not click the "Register" button yet — open Create!Web Flow Cloud in a separate window.

Create!Web Flow Cloud Settings

  1. Log in with administrator privileges and open "Admin > System Settings".
    04.png

  2. Open "Login Authentication".
    05.png

  3. Configure each item on the login authentication screen as follows.
    Authentication Method Select "SAML Authentication"
    Identity Provider Login URL The "Identity Provider URL" noted from TrustLogin
    Identity Provider Logout URL https://portal.trustlogin.com/
    Certificate Upload the "Certificate" downloaded from TrustLogin
    Service Provider Entity ID https://[your contract domain].createwebflow-cloud.jp/XFV20
    Note: Your contract domain is the subdomain portion of your Create!Web Flow Cloud URL.

    06.png

    We recommend noting down the URL inside the blue box below "Authentication Method", as it allows you to log in using standard login if a SAML authentication configuration error prevents you from logging in.

  4. Download the metadata using the "Download" button to the right of "Service Provider Entity ID", and click "Save".
    07.png

  5. Return to the System Settings screen and click the "Apply Settings" button to apply the configuration.
    08.png
    09.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Upload the metadata downloaded from Create!Web Flow Cloud to "Metadata" in "Service Provider Settings".
    10.png

  2. Click the "Register" button to save.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "Register App" screen, select "Create!Web Flow Cloud (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name", enter it, then click the "Register" button.
  4. Click the app on "My Page" or in the "browser extension" and check that login succeeds.

② When an Administrator Adds Members

  1. Search for and click the "Create!Web Flow Cloud (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.