|
Item |
Details |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For how to configure custom attributes, see here |
||
|
SP-side settings |
〇 |
Configured by the administrator |
|
Request the SP to configure the settings |
||
|
Provisioning |
Supports provisioning via API (accounts can be managed in TrustLogin) |
|
|
Supports SAML JIT provisioning(accounts can be managed in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Device compatibility verification status |
〇 |
PC - Browser |
|
ー |
PC - Desktop app |
|
|
〇 |
iOS - Standard browser (Safari) Note: excludes access via the TrustLogin mobile app |
|
|
ー |
iOS - TrustLogin mobile app internal browser |
|
|
ー |
iOS - Native app |
|
|
〇 |
Android - Standard browser (Chrome) Note: excludes access via the TrustLogin mobile app |
|
|
ー |
Android - TrustLogin mobile app internal browser |
|
|
ー |
Android - Native app |
|
TrustLogin Admin Page Settings
- Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button at the top right of the screen.
- Search on the "Register Corporate App" screen and select "Active! gate SS(SAML)".
- Note down the "IdP URL" and "Issuer/Entity ID" under "Identity Provider Information", and download the certificate via "Get Certificate".
Now, let's move on to the settings on the Active! gate SS side. Please open Active! gate SS in a separate window.
Active! gate SS Settings
- Log in to the Active! gate SS administrator screen and open "User Management > Single Sign-On".
- Check the "Target Domain", and select "Change" for "Use as Service Provider". Register the information noted in step 3 of "TrustLogin Admin Page Settings" above as follows.
IdP Template Select "Other" IdP EntityID The "Issuer/Entity ID" noted from TrustLogin IdP Login Page URL The "IdP URL" noted from TrustLogin IdP Certificate The "certificate" downloaded from TrustLogin EntityID The "Issuer/Entity ID" noted from TrustLogin
- Click the "OK" button.
Return to the TrustLogin Admin Page again.
TrustLogin Admin Page Settings (Continued)
- Enter the following into the three fields "Login URL" and "ACS URL to Service" under "Service Provider Settings".
❶・❹ Your Active! gate SS ID ❷ Target Domain
Note: If you are using Active! gate SS with a subdomain, please enter the subdomain.❸ The "Issuer/Entity ID" from TrustLogin's Identity Provider Information
- Click the "Register" button at the top right to complete the setup.
TrustLogin User Settings
① When a User Adds the App via My Page
- Click the "Add App" button in "My Page".
- Select "Active! gate SS(SAML)" on the "Register App" screen, and click the "Next" button at the top right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
- Click the app in "My Page" or the browser extension, and check whether login succeeds.
② When an Administrator Adds a Member
- Search for and click the "Active! gate SS(SAML)" app in the "Admin Page > Apps" menu.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.