|
Item |
Details |
|
|---|---|---|
|
Prior Confirmation |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure custom attributes, click here |
||
|
SP-side Settings |
〇 |
Configured by the administrator |
|
Request the SP to configure settings |
||
|
Provisioning |
Supports provisioning via API (account management possible in TrustLogin) |
|
|
Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not possible) |
||
|
〇 |
None (accounts created individually in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
ー |
IdP-Initiated SSO |
|
|
Verified Operation Status by Device |
〇 |
PC - Browser |
|
〇 |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App Internal Browser |
|
|
〇 |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App Internal Browser |
|
|
〇 |
Android - Native App |
|
|
SAML Authentication Scope |
〇 |
Enabled for all users (SAML authentication only) |
| ー |
Other |
|
|
Notes |
|
|
|
Table of Contents: Configuring the TrustLogin Admin Page Configuring the TrustLogin Admin Page (Continued) |
Preparation
For existing members on the LINE WORKS side, set the email address used as the TrustLogin identifier as the External Key.
-
Log in to the Developer Console and open "Organization Integration" in the left menu.
- Download the CSV file from "Download List" under "Member External Key Mapping".
- In the downloaded CSV file, add and edit the "External Key" column with the corresponding TrustLogin email address for each member, then upload it using the "Upload" button.
- Confirm that the "External Key" has been applied correctly.
Note: After enabling SAML SSO, you will be able to edit the External Key of existing members and set the External Key when adding new members from the Member Management page in the Admin screen.
Configuring the TrustLogin Admin Page
- Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
- Search on the "Register Corporate App" screen and select "LINE WORKS (SAML)".
-
Note the value of the "Identity Provider URL" under "Identity Provider Information", and download the certificate using the "Get Certificate" button.
- Convert the extension of the downloaded certificate to ".pem".
At this point, move on to the configuration on the LINE WORKS side.
Do not click the "Register" button yet — open LINE WORKS in a separate window.
Configuring LINE WORKS
-
Open the Developer Console, open "SSO" > "WORKS as SP" in the left menu, and select "SAML" for "SSO Type".
- Configure each item as follows, then click the "Apply" button.
Web Login URL The "Identity Provider URL" obtained from TrustLogin Logout URL https://portal.trustlogin.com/ IdP-issued Certificate The "Certificate" obtained from TrustLogin (converted to PEM format) Set External Browser Turn "Apply" ON
When you click "Apply", a message will be displayed. Please check it and select "OK".
Return to the TrustLogin Admin Page again.
Configuring the TrustLogin Admin Page (Continued)
- In the "Service Provider Settings" section, enter the following into the 3 input fields for "Login URL" and "ACS URL for Service".
Login URL ① Your LINE WORKS domain name/Works group name
(the "group.xx" part of id@group.xx)Login URL ② The part after "https://" in the URL of the LINE WORKS service you want to redirect to after login
(Example)
Home home.worksmobile.com
Talk talk.worksmobile.com
Calendar calendar.worksmobile.comACS URL for Service Your LINE WORKS domain name/Works group name
(the "group.xx" part of id@group.xx)
- Click the "Register" button to save.
Configuring TrustLogin User Settings
① When a user adds the app from My Page
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "LINE WORKS (SAML)" and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name", enter a new one, then click the "Register" button.
② When an administrator adds a member
- On the "Admin Page > Apps" menu, search for and click the "LINE WORKS (SAML)" app.
- Click "Add Member", select the user you want to add from the member list, and click the "Register" button to add them.
How to Log In from the Mobile/Desktop App
- Open the login screen of the mobile app, enter your "Mobile Number or ID", and tap the "Log In" button.
When you launch the desktop app, a login screen window will open. Similarly, enter your "Mobile Number or ID" and click the "Log In" button.
- You will be redirected to an external browser. If you are not logged in to TrustLogin, an authentication screen will open; complete the authentication to finish logging in.