|
Item |
Details |
|
|---|---|---|
|
Pre-check |
|
|
|
Name ID |
〇 |
Email address |
|
Custom attribute Note: For how to configure custom attributes, see here |
||
|
SP-side Configuration |
〇 |
Configured by the administrator |
|
Request configuration from the SP |
||
|
Provisioning |
API-based Provisioning supported (account management available in TrustLogin) |
|
|
SAML JIT provisioning supported (account management available in TrustLogin; user deletion not supported) |
||
|
〇 |
None (accounts created in each system) |
|
|
Access Method |
〇 |
SP-Initiated SSO |
|
〇 |
IdP-Initiated SSO |
|
|
Verified Operation by Device |
〇 |
PC - Browser |
|
ー |
PC - Desktop App |
|
|
〇 |
iOS - Standard Browser (Safari) |
|
|
〇 |
iOS - TrustLogin Mobile App In-App Browser |
|
|
ー |
iOS - Native App |
|
|
〇 |
Android - Standard Browser (Chrome) |
|
|
〇 |
Android - TrustLogin Mobile App In-App Browser |
|
|
ー |
Android - Native App |
|
TrustLogin Admin Page Settings
- Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button at the top right of the screen.
- On the "Register Corporate App" screen, search for and select "Rakuraku Meisai (SAML)".
- Note the "IdP URL" in the "Identity Provider Information" section, and download the certificate using the "Get Certificate" button.
Now, switch to configuring Rakuraku Meisai. Open Rakuraku Meisai in a separate window.
Rakuraku Meisai Configuration
- Log in with an administrator account and open the "Basic Settings" tab.
- Open "System Settings".
- Select "Use" for "Single Sign-On", and configure the items as follows.
Identity Provider Login URL The IdP URL noted from TrustLogin Identity Provider Logout URL https://portal.trustlogin.com/ Identity Provider Certificate Upload the certificate downloaded from TrustLogin
-
Using "Download Metadata", download the metadata, and finally click "Change".
- Return to the "Basic Settings" tab and open "Staff Management".
-
Select the user for whom you want to configure SAML, and click the pencil icon in the operation column.
-
In "Single Sign-On Authenticated ID (NameID)", enter the email address registered in TrustLogin, and click "Update".
Now return to the TrustLogin settings again.
TrustLogin Admin Page Settings (Continued)
-
Upload the metadata you noted from Rakuraku Meisai using "Select Metadata" in "Service Provider Settings".
- Save the configuration by clicking the "Register" button.
TrustLogin User Settings
① When a User Adds the App via My Page
- Click the "Add App" button on "My Page".
- On the "Register App" screen, select "Rakuraku Meisai (SAML)" and click the "Next" button at the top right of the screen.
- If you want to change the "Display Name", enter it, then click the "Register" button.
- Click the app on "My Page" or in the "browser extension" and check that login succeeds.
② When an Administrator Adds Members
- Search for and click the "Rakuraku Meisai (SAML)" app in the "Admin Page > App" menu.
- Click "Add Member", select the user to add from the member list, and click the "Register" button to add them.