|
Item |
Details |
|
|---|---|---|
|
Prerequisites |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For instructions on how to configure custom attributes, see here |
||
|
SP-side settings |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
Supports provisioning via API (account management possible from TrustLogin) |
|
|
Supports SAML JIT provisioning (account management possible from TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts are created in each system) |
|
|
Access method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified operation status by device |
〇 |
PC - Browser |
|
ー |
PC - Desktop app |
|
|
〇 |
iOS - Standard browser (Safari) |
|
|
〇 |
iOS - TrustLogin mobile app internal browser |
|
|
※ |
iOS - Native app |
|
|
〇 |
Android - Standard browser (Chrome) |
|
|
〇 |
Android - TrustLogin mobile app internal browser |
|
|
※ |
Android - Native app |
|
Note: Native app operation for both iOS and Android is currently being verified.
TrustLogin Admin Page Settings
-
Log in to TrustLogin, open the "Admin Page > Apps" menu, and click "Register App" in the upper right of the screen.
- On the "Corporate App Registration" screen, search for and select "Knowledge Suite (SAML)".
- Note the "IdP URL" under "Identity Provider Information," and download the "Certificate".
At this point, switch over to the Knowledge Suite settings.
Do not click the "Register" button yet — open the Knowledge Suite admin page in a separate tab.
Knowledge Suite Settings
- Log in to Knowledge Suite with administrator privileges, and click "Settings" at the top of the screen.
- Open "Knowledge Suite Settings > SSO Settings" from the left-hand menu.
- For "SSO Usage Settings," select "Disabled," enter any subdomain in "URL for SSO Use," and click "Save Settings".
TrustLogin Admin Page Settings (Continued)
Return to the TrustLogin admin page.
-
In the "Service Provider Settings," enter the subdomain you configured in step 3 of "Knowledge Suite Settings" above into the blank fields for "Login URL," "Entity ID," and "ACS URL for Service".
- Click the "Register" button.
Knowledge Suite Settings (Continued)
- Open "Knowledge Suite Settings > SSO Settings" again.
- Configure each item as follows, and click "Save Settings".
SSO Usage Settings Change to "Enabled" Normal Login Permission Settings for SSO Use Select who is permitted to use normal login JIT Integration Usage Settings Select "Disabled" Identifier Format Select "urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified" IdP Login URL The "IdP URL" you noted from the TrustLogin admin page IdP Logout URL Specify https://portal.trustlogin.com/ IdP Certificate Upload the certificate downloaded from the TrustLogin admin page
TrustLogin User Settings
① When a user adds the app from My Page
- Click the "Add App" button in "My Page".
- On the "App Registration" screen, select "Knowledge Suite (SAML)", and click the "Next" button in the upper right of the screen.
- If you want to change the "Display Name," enter a new one, and click the "Register" button.
② When an administrator adds a member
- In the "Admin Page > Apps" menu, search for and click the "Knowledge Suite (SAML)" app.
- Click "Add Member," select the user you want to add from the member list, and click the "Register" button to add them.