Open the Login Method Settings screen in ZUNDA ID, and click Add SAML Provider.
In the dialog that appears, enter a display name of your choice to identify this provider (for example, GMO). The name you enter here is shown on the login screen and in settings screens.
Click Create to go to the provider details screen. Leave the provider details screen open — don't close it.
From App Registration in GMO Trust Login, register ZUNDA ID.
Select ZUNDA ID.
Download the metadata.
Once the download is complete, click Register to finish the setup wizard.
Click the app you created to open its detailed settings.
From Add Member, assign the user account you're currently working with as a member.
The user account you're currently working with must be assigned as a member so you can run the login test later. Once the test succeeds, you can change the membership.
Confirm that the member has been assigned.
Return to the provider details screen in ZUNDA ID, click Import Metadata XML, and import the IdP metadata XML you downloaded earlier.
Importing the metadata sets up, in one step, the SSO URL, entity ID, IdP certificate, and other settings ZUNDA ID needs to verify responses from GMO Trust Login.
In the dialog that appears, click Upload from file and select the IdP metadata XML file you saved earlier.
Confirm the file has loaded, then click Import Metadata XML. If the file is invalid, an error is displayed — if that happens, download the IdP metadata from GMO Trust Login again and retry.
Confirm that the IdP Entity ID, SSO URL, IdP certificate, and other fields have all been imported. The SAML provider setup on the ZUNDA ID side is now complete.
Click the Test button to open the GMO Trust Login login screen. If pop-ups are blocked, temporarily disable your browser's pop-up blocker.
If an error is displayed, or a check item is marked in red, check the following:
- Whether the IdP metadata XML was imported correctly
- Whether GMO Trust Login's attribute mapping (First Name / Last Name) is configured correctly
- Whether the GMO Trust Login service provider details (ACS URL, entity ID) are correct
- Whether the user account has been added correctly as a member of the app (with the necessary permissions granted) in GMO Trust Login
Once the test succeeds, return to the provider details screen and switch Status to ON to enable SAML login. After that, select this provider as a login method in Domain Settings so actual users can log in using SAML authentication.