How to Configure SAML Authentication for CloudSign

Item

Details

Preliminary Confirmation

  • Prior configuration is required on CloudSign.

  • You must create an account on CloudSign using the same email address as your TrustLogin account.

  • For the latest setup instructions, please refer to the manual provided by CloudSign.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, click here

Settings on the SP Side

Configured by the administrator

Request the SP to configure settings

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)
Note: For setup instructions when using provisioning (Enterprise plan), click here

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Company App" screen, search and select "CloudSign (SAML)."
    cloudsign_02.png

  3. Download the metadata from the "Download Metadata" button in the "Identity Provider Information" section.
    03.png

Now, switch to the settings on the CloudSign side.
Without clicking the "Register" button, open the CloudSign admin screen in a separate tab using an account with "SSO Administrator" privileges.

CloudSign Settings

  1. From the left menu of the admin screen, select "Team > SSO Settings."
    04.png

  2. From "Settings > Metadata File Settings > Select File," upload the metadata obtained from TrustLogin.
    05.png

  3. Make a note of the "Audience" and "ACS URL" values in "Settings > Service Provider Information."
    Note: Be sure to keep this screen open and proceed with the following TrustLogin settings.
    If you turn "ON" the "SSO Settings for Each Team" at the bottom of this screen before completing the TrustLogin settings, you will no longer be able to log in to the CloudSign admin screen.
    06.png

Return to the TrustLogin settings page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "Audience" value obtained from CloudSign
    ACS URL for the Service The "ACS URL" value obtained from CloudSign

    07.png

  2. Click the "Register" button to save.

Return to the CloudSign settings page again.

CloudSign Settings (Enabling SSO)

Turn ON the teams subject to SSO in "SSO Settings for Each Team."
08.png

TrustLogin User Settings

(1) When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page."
  2. On the "Register App" screen, select "CloudSign (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

(2) When an Administrator Adds a Member

  1. In the "Admin Page > Apps" menu, search for and click the "CloudSign (SAML)" app.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.

How to Log In to CloudSign

How to Log In from CloudSign

  1. Access the CloudSign login page directly, or click the CloudSign SAML app in TrustLogin to be linked to the CloudSign login page.
    Enter your email address and click "Next."
    09.png

  2. Click the "Log In" button.
    cloudsign_10.png

  3. If you are already logged in to TrustLogin, you will be logged in to CloudSign.
    If you are not logged in to TrustLogin, the TrustLogin login screen will be displayed; after authenticating, you will be logged in to CloudSign.

How to Log In Using the Auxiliary App

If you access via SAML authentication from TrustLogin's My Page or the browser extension, you can register the separate "[SAML Auxiliary] CloudSign" app to auto-fill your email address and log in to CloudSign.
Note: The auxiliary app is only available on PC browsers and the Android standard browser (Chrome).

  1. On the "Register Company App" screen, search for and select "[SAML Auxiliary] CloudSign," and register it.
    cloudsign.png

  2. On "My Page," click the "Add App" button and select "[SAML Auxiliary] CloudSign."

  3. Enter the email address registered with CloudSign in "Email Address," and click the "Register" button.cloudsign2.png

  4. Click the app from "My Page" or the "Browser Extension," and confirm that login is successful.

How to Configure SAML Authentication for CloudSign

Item

Details

Preliminary Confirmation

  • Prior configuration is required on CloudSign.

  • You must create an account on CloudSign using the same email address as your TrustLogin account.

  • For the latest setup instructions, please refer to the manual provided by CloudSign.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, click here

Settings on the SP Side

Configured by the administrator

Request the SP to configure settings

Provisioning

Supports provisioning via API (account management possible in TrustLogin)

Supports SAML JIT provisioning (account management possible in TrustLogin; user deletion not supported)
Note: For setup instructions when using provisioning (Enterprise plan), click here

None (accounts are created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Verified Operation by Device

PC - Browser

PC - Desktop App

iOS - Standard Browser (Safari)

iOS - TrustLogin Mobile App Internal Browser

iOS - Native App

Android - Standard Browser (Chrome)

Android - TrustLogin Mobile App Internal Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > Apps" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. On the "Register Company App" screen, search and select "CloudSign (SAML)."
    cloudsign_02.png

  3. Download the metadata from the "Download Metadata" button in the "Identity Provider Information" section.
    03.png

Now, switch to the settings on the CloudSign side.
Without clicking the "Register" button, open the CloudSign admin screen in a separate tab using an account with "SSO Administrator" privileges.

CloudSign Settings

  1. From the left menu of the admin screen, select "Team > SSO Settings."
    04.png

  2. From "Settings > Metadata File Settings > Select File," upload the metadata obtained from TrustLogin.
    05.png

  3. Make a note of the "Audience" and "ACS URL" values in "Settings > Service Provider Information."
    Note: Be sure to keep this screen open and proceed with the following TrustLogin settings.
    If you turn "ON" the "SSO Settings for Each Team" at the bottom of this screen before completing the TrustLogin settings, you will no longer be able to log in to the CloudSign admin screen.
    06.png

Return to the TrustLogin settings page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "Audience" value obtained from CloudSign
    ACS URL for the Service The "ACS URL" value obtained from CloudSign

    07.png

  2. Click the "Register" button to save.

Return to the CloudSign settings page again.

CloudSign Settings (Enabling SSO)

Turn ON the teams subject to SSO in "SSO Settings for Each Team."
08.png

TrustLogin User Settings

(1) When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page."
  2. On the "Register App" screen, select "CloudSign (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it, then click the "Register" button.

(2) When an Administrator Adds a Member

  1. In the "Admin Page > Apps" menu, search for and click the "CloudSign (SAML)" app.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.

How to Log In to CloudSign

How to Log In from CloudSign

  1. Access the CloudSign login page directly, or click the CloudSign SAML app in TrustLogin to be linked to the CloudSign login page.
    Enter your email address and click "Next."
    09.png

  2. Click the "Log In" button.
    cloudsign_10.png

  3. If you are already logged in to TrustLogin, you will be logged in to CloudSign.
    If you are not logged in to TrustLogin, the TrustLogin login screen will be displayed; after authenticating, you will be logged in to CloudSign.

How to Log In Using the Auxiliary App

If you access via SAML authentication from TrustLogin's My Page or the browser extension, you can register the separate "[SAML Auxiliary] CloudSign" app to auto-fill your email address and log in to CloudSign.
Note: The auxiliary app is only available on PC browsers and the Android standard browser (Chrome).

  1. On the "Register Company App" screen, search for and select "[SAML Auxiliary] CloudSign," and register it.
    cloudsign.png

  2. On "My Page," click the "Add App" button and select "[SAML Auxiliary] CloudSign."

  3. Enter the email address registered with CloudSign in "Email Address," and click the "Register" button.cloudsign2.png

  4. Click the app from "My Page" or the "Browser Extension," and confirm that login is successful.