How to Configure SAML Authentication for Rakuraku Seisan

[Single Sign-On for Rakuraku Seisan with TrustLogin]

Note: Prior application and configuration in Rakuraku Seisan is required.

Note: The "Employee Code," which serves as the user identification information for Rakuraku Seisan, must be added to the member information in TrustLogin and linked in advance. For detailed steps, please refer to the pages below.

Custom Attribute Setup (Individual Registration)
Custom Attribute Setup (Bulk Registration)

Note: For the latest configuration steps, please refer to the manual provided by Rakuraku Seisan.

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.

    _rakuraku_saml_01.png

  2. On the "Register Corporate App" screen, search for and select "Rakuraku Seisan (SAML)".

    rakuraku_saml_02.png

  3. Note the value of the "IdP URL" in the "Identity Provider Information" section, and download the certificate using the "Get Certificate" button.

    rakuraku_saml_03.png

Now, let's move on to configuring Rakuraku Seisan. Please open Rakuraku Seisan in a separate window.

Rakuraku Seisan Configuration

  1. Log in to Rakuraku Seisan with administrator privileges, and open "Admin > System Settings".

    rakuraku_saml_04.png

  2. On the "System Settings" screen, open the "Security" tab, and change "Single Sign-On Settings" from "Disable" to "Enable".

    rakuraku_saml_05.png

  3. Enter the "IdP URL" noted in step 3 of "TrustLogin Admin Page Settings" above into the "IdP Login URL" field, and upload the downloaded certificate to the "IdP Certificate" field.

    For the "IdP Logout URL," enter the URL you want to redirect to when logging out of Rakuraku Seisan. Here, "https://portal.trustlogin.com/" is registered as an example.

    Download the metadata using "Download Metadata."

    For "Association," select "[Method 1] Associate any IdP attribute with the Employee Code in this system."

    rakuraku_saml_06.png

  4. Once the above settings are complete, click "Confirm" to finish.

Now return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. For the "Name ID Value" in "Service Provider Settings," select the Rakuraku Seisan Employee Code attribute that you previously added to the member information in TrustLogin from the dropdown.

    Upload the metadata downloaded from Rakuraku Seisan using the "Select Metadata" button.

    rakuraku_saml_07.png
  2. Click the "Register" button at the top right to finish.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "App Registration" screen, select "Rakuraku Seisan (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.
  4. Click the app on "My Page" or in the "Browser Extension," and check that login succeeds.

② When an Administrator Adds Members

  1. Search for and click the "Rakuraku Seisan (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Rakuraku Seisan

[Single Sign-On for Rakuraku Seisan with TrustLogin]

Note: Prior application and configuration in Rakuraku Seisan is required.

Note: The "Employee Code," which serves as the user identification information for Rakuraku Seisan, must be added to the member information in TrustLogin and linked in advance. For detailed steps, please refer to the pages below.

Custom Attribute Setup (Individual Registration)
Custom Attribute Setup (Bulk Registration)

Note: For the latest configuration steps, please refer to the manual provided by Rakuraku Seisan.

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.

    _rakuraku_saml_01.png

  2. On the "Register Corporate App" screen, search for and select "Rakuraku Seisan (SAML)".

    rakuraku_saml_02.png

  3. Note the value of the "IdP URL" in the "Identity Provider Information" section, and download the certificate using the "Get Certificate" button.

    rakuraku_saml_03.png

Now, let's move on to configuring Rakuraku Seisan. Please open Rakuraku Seisan in a separate window.

Rakuraku Seisan Configuration

  1. Log in to Rakuraku Seisan with administrator privileges, and open "Admin > System Settings".

    rakuraku_saml_04.png

  2. On the "System Settings" screen, open the "Security" tab, and change "Single Sign-On Settings" from "Disable" to "Enable".

    rakuraku_saml_05.png

  3. Enter the "IdP URL" noted in step 3 of "TrustLogin Admin Page Settings" above into the "IdP Login URL" field, and upload the downloaded certificate to the "IdP Certificate" field.

    For the "IdP Logout URL," enter the URL you want to redirect to when logging out of Rakuraku Seisan. Here, "https://portal.trustlogin.com/" is registered as an example.

    Download the metadata using "Download Metadata."

    For "Association," select "[Method 1] Associate any IdP attribute with the Employee Code in this system."

    rakuraku_saml_06.png

  4. Once the above settings are complete, click "Confirm" to finish.

Now return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. For the "Name ID Value" in "Service Provider Settings," select the Rakuraku Seisan Employee Code attribute that you previously added to the member information in TrustLogin from the dropdown.

    Upload the metadata downloaded from Rakuraku Seisan using the "Select Metadata" button.

    rakuraku_saml_07.png
  2. Click the "Register" button at the top right to finish.

TrustLogin User Settings

① When a User Adds the App via My Page

  1. Click the "Add App" button on "My Page".
  2. On the "App Registration" screen, select "Rakuraku Seisan (SAML)" and click the "Next" button at the top right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.
  4. Click the app on "My Page" or in the "Browser Extension," and check that login succeeds.

② When an Administrator Adds Members

  1. Search for and click the "Rakuraku Seisan (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.