How to Configure SAML Authentication for Kaonavi

Item Details
Prior Confirmation
  • Prior configuration on the Kaonavi side is required.
  • You need to register the same email address used for TrustLogin as the "Login ID" in Kaonavi.
  • For the latest setup instructions, please check the manual provided by Kaonavi.
Name ID Email address
Custom attribute Note: For instructions on how to configure custom attributes, clickhere
SP-side Settings Configured by the administrator
Request configuration from the SP
Provisioning Supportsprovisioningvia API (accounts can be managed in TrustLogin)
Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion not supported)
None (accounts are created in each system)
Access Method SP-Initiated SSO
IdP-Initiated SSO
Device Verification Status PC - Browser
PC - Desktop App
iOS - Standard Browser (Safari)
iOS - TrustLogin Mobile App Internal Browser
iOS - Native App
Android - Standard Browser (Chrome)
Android - TrustLogin Mobile App Internal Browser
Android - Native App

Configuring the TrustLogin Admin Page

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.

    01.png
  2. Search on the "Register Corporate App" screen and select "Kaonavi (SAML)."
    kaonavi_saml_01.png
  3. Note down the "IdP URL," "Issuer/Entity ID," and "Certificate" (the contents of the text file) under "Identity Provider Information."
    03 (1).png

Now, let's move on to the settings on the Kaonavi side.
Do not click the "Register" button yet — open Kaonavi in a separate window.

Kaonavi Settings

  1. Open the Kaonavi administrator menu and go to "Single Sign-On Management."
    Kaonavi01.png
  2. Click the "Edit" button to open "Edit IdP Settings." Configure each item as shown below, then click "Save."

    IdP Name Any name
    Entity The "Issuer/Entity ID" you noted down from TrustLogin
    SSO URL The "IdP URL" you noted down from TrustLogin
    x509cert  The contents of the certificate text file

    Note: Remove the first line "-----BEGIN CERTIFICATE-----" and
    the last line "-----END CERTIFICATE-----."


    kaonavi_saml_04 (1).png

  3. After saving, note down the "Login Page," "Entity," and "ACS URL" settings shown under "Kaonavi Configuration."_____________.png

Return to the TrustLogin Admin Page again.

Configuring the TrustLogin Admin Page

  1. In "Service Provider Settings," extract the "text/numeric" portion from the settings information you obtained from Kaonavi and enter it into the corresponding blank fields for "Login URL," "Entity ID," and "ACS URL for Service."
    2026-07-08_11-53-56.png
  2. Click the "Register" button to save.

Configuring TrustLogin Users

① Adding the App as a User via My Page

  1. Click the "Add App" button on "My Page."
  2. On the "Register App" screen, select "Kaonavi (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

② Adding a Member as an Administrator

  1. On the "Admin Page > Apps" menu, search for the "Kaonavi (SAML)" app and click it.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.

How to Log In

① Logging in with "Kaonavi (SAML)"

When you launch "Kaonavi (SAML)" from the TrustLogin My Page or browser extension, you will be redirected to the Kaonavi login screen. Click the button with the IdP name you configured in "Kaonavi Settings > 2." to complete the login.___________.png

② Using the Auxiliary App

We also provide an auxiliary app that lets you skip the "clicking the IdP name button" step described in the login procedure in ①. Please register the corporate app "[SAML Auxiliary] Kaonavi" to use this feature.
Note: The auxiliary app is only available on PC browsers and iOS/Android internal browsers.

  1. Search on the "Register Corporate App" screen and select "[SAML Auxiliary] Kaonavi."
    hojyo.png
  2. Overwrite the "Login URL" with the "Login Page" URL obtained from Kaonavi.
    kaonavihojyo02.png
  3. Click the "Register" button to save.
  4. Add the app following the same procedure as a normal app registration, either as the administrator or by the user themselves.
    Some items on the registration screen are marked "No input required," but no input is needed for those items.
    kaonavihojyo03.png

SSO Authentication Method for the Native App

If you are using the native app, you can use the following method.

  1. Open the Kaonavi administrator menu and select "Smartphone App Management."Kaonavi02.png
  2. Select the users to allow to use the smartphone app, and turn "App Usage" to "ON."Kaonavi03.png
  3. Download and open the Kaonavi native app.
  4. Select "SSO Login," enter your email address, and click "Login."
    Kaonavi04.png
  5. The button with the IdP name you configured in "Kaonavi Settings > 2." will be displayed. After clicking the button, you will be redirected to the TrustLogin login screen. Log in to TrustLogin to use the app.
    Kaonavi06.png

How to Configure SAML Authentication for Kaonavi

Item Details
Prior Confirmation
  • Prior configuration on the Kaonavi side is required.
  • You need to register the same email address used for TrustLogin as the "Login ID" in Kaonavi.
  • For the latest setup instructions, please check the manual provided by Kaonavi.
Name ID Email address
Custom attribute Note: For instructions on how to configure custom attributes, clickhere
SP-side Settings Configured by the administrator
Request configuration from the SP
Provisioning Supportsprovisioningvia API (accounts can be managed in TrustLogin)
Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion not supported)
None (accounts are created in each system)
Access Method SP-Initiated SSO
IdP-Initiated SSO
Device Verification Status PC - Browser
PC - Desktop App
iOS - Standard Browser (Safari)
iOS - TrustLogin Mobile App Internal Browser
iOS - Native App
Android - Standard Browser (Chrome)
Android - TrustLogin Mobile App Internal Browser
Android - Native App

Configuring the TrustLogin Admin Page

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.

    01.png
  2. Search on the "Register Corporate App" screen and select "Kaonavi (SAML)."
    kaonavi_saml_01.png
  3. Note down the "IdP URL," "Issuer/Entity ID," and "Certificate" (the contents of the text file) under "Identity Provider Information."
    03 (1).png

Now, let's move on to the settings on the Kaonavi side.
Do not click the "Register" button yet — open Kaonavi in a separate window.

Kaonavi Settings

  1. Open the Kaonavi administrator menu and go to "Single Sign-On Management."
    Kaonavi01.png
  2. Click the "Edit" button to open "Edit IdP Settings." Configure each item as shown below, then click "Save."

    IdP Name Any name
    Entity The "Issuer/Entity ID" you noted down from TrustLogin
    SSO URL The "IdP URL" you noted down from TrustLogin
    x509cert  The contents of the certificate text file

    Note: Remove the first line "-----BEGIN CERTIFICATE-----" and
    the last line "-----END CERTIFICATE-----."


    kaonavi_saml_04 (1).png

  3. After saving, note down the "Login Page," "Entity," and "ACS URL" settings shown under "Kaonavi Configuration."_____________.png

Return to the TrustLogin Admin Page again.

Configuring the TrustLogin Admin Page

  1. In "Service Provider Settings," extract the "text/numeric" portion from the settings information you obtained from Kaonavi and enter it into the corresponding blank fields for "Login URL," "Entity ID," and "ACS URL for Service."
    2026-07-08_11-53-56.png
  2. Click the "Register" button to save.

Configuring TrustLogin Users

① Adding the App as a User via My Page

  1. Click the "Add App" button on "My Page."
  2. On the "Register App" screen, select "Kaonavi (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

② Adding a Member as an Administrator

  1. On the "Admin Page > Apps" menu, search for the "Kaonavi (SAML)" app and click it.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.

How to Log In

① Logging in with "Kaonavi (SAML)"

When you launch "Kaonavi (SAML)" from the TrustLogin My Page or browser extension, you will be redirected to the Kaonavi login screen. Click the button with the IdP name you configured in "Kaonavi Settings > 2." to complete the login.___________.png

② Using the Auxiliary App

We also provide an auxiliary app that lets you skip the "clicking the IdP name button" step described in the login procedure in ①. Please register the corporate app "[SAML Auxiliary] Kaonavi" to use this feature.
Note: The auxiliary app is only available on PC browsers and iOS/Android internal browsers.

  1. Search on the "Register Corporate App" screen and select "[SAML Auxiliary] Kaonavi."
    hojyo.png
  2. Overwrite the "Login URL" with the "Login Page" URL obtained from Kaonavi.
    kaonavihojyo02.png
  3. Click the "Register" button to save.
  4. Add the app following the same procedure as a normal app registration, either as the administrator or by the user themselves.
    Some items on the registration screen are marked "No input required," but no input is needed for those items.
    kaonavihojyo03.png

SSO Authentication Method for the Native App

If you are using the native app, you can use the following method.

  1. Open the Kaonavi administrator menu and select "Smartphone App Management."Kaonavi02.png
  2. Select the users to allow to use the smartphone app, and turn "App Usage" to "ON."Kaonavi03.png
  3. Download and open the Kaonavi native app.
  4. Select "SSO Login," enter your email address, and click "Login."
    Kaonavi04.png
  5. The button with the IdP name you configured in "Kaonavi Settings > 2." will be displayed. After clicking the button, you will be redirected to the TrustLogin login screen. Log in to TrustLogin to use the app.
    Kaonavi06.png