> For the complete documentation index, see [llms.txt](https://help.aikido.dev/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://help.aikido.dev/docs/docs-ja/hajimeni/automated-user-management/saml-login/jumpcloud-login-with-saml.md).

# JumpCloud：SAMLでログイン

{% hint style="info" %}
この機能は、 **有料** プランでのみ利用可能で、デフォルトでは有効になっていません。この機能を有効にしたい場合は、Aikido内の右下にあるチャットからご連絡ください。
{% endhint %}

> Gitプロバイダー経由の自動オンボーディングの代わりにSAMLログインに切り替えると、GitHub、Bitbucket、またはAzure DevOpsからのチームのインポートは今後動作しなくなります。今後は、AikidoのUIまたは [アクセスプロファイルを通じて、チームを手動で管理する必要があります。](/docs/docs-ja/hajimeni/automated-user-management/saml-login/saml-user-rights-access-profiles-recommended.md)

## アカウントでのSAML設定 <a href="#setting-up-saml-in-your-account" id="setting-up-saml-in-your-account"></a>

**手順 1。** 移動先 [**一般設定**](https://app.aikido.dev/settings/account) をクリックし、**「SAML認証を有効にする」**

![SAML認証を有効にするオプションがあるワークスペース情報ページ。](/files/ad278b37943846d49d04ea8cb2e5fa6fec2a42c7)

**手順 2。** コピー **すべての詳細** をIDプロバイダーにコピーします。以下の手順を参照してください。

![必要なURLとName ID形式を含むSAML認証設定画面。](/files/8ead9fa04fd75445d0fdeb92ad6f5dc363e7059b)

### JumpCloudで続行 <a href="#continue-in-jumpcloud" id="continue-in-jumpcloud"></a>

**手順 1。** 移動先 **ユーザー認証** > **SSOアプリケーション** をJumpCloud管理ポータルのナビゲーションで。

**手順 2。** 次をクリックします： **新しいアプリケーションを追加** を検索し、 **SAML 2.0**。クリック： **次に**.

**手順 3。** を選択します。 **表示ラベル** に移動し、 **アプリケーションを保存**.

**手順 4。** クリック **アプリケーションを設定**.

**ステップ 5。** 次をクリックします **SSO** タブを開き、次のフィールドを入力します：

* **Idp Entity ID：** `https://console.jumpcloud.com/<appname>`
* **SP Entity ID：** `https://app.aikido.dev/saml`
* **ACS URL** - **デフォルトURL：** `https://app.aikido.dev/api/saml/saml_auth?samlClientId=...` （Aikidoに表示されている通り）
* **SAMLSubject NameID：** `email`
* **SAMLSubject NameID形式：** `urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress`
* **署名アルゴリズム：** `RSA-SHA256`
* **デフォルトRelayState：** ここは空欄のままで構いません

![安全なID管理連携のためのSAML 2.0シングルサインオン設定。](/files/7af856eae021f1457861a1a5f631e6eb7ef482a6)

**ステップ 6。** Aikidoで続行しますが、ついでに **保存** をクリックして、この画面に戻ることもできます。

### Aikidoに戻る <a href="#go-back-to-aikido" id="go-back-to-aikido"></a>

* 次を入力してください：
  * **Entity ID / Issuer：** `https://console.jumpcloud.com/<appname>` （これが **Idp Entity ID** としてJumpCloudで入力したものと一致していることを確認してください。問題がある場合は、下部のトラブルシューティングセクションを参照してください）
  * **シングルサインオンURL：** JumpCloudの **IDP URL**に表示されている通り。 （次のように見えます `https://sso.jumpcloud.com/saml2/<appname>`)
  * **X.509証明書**：これはさまざまな方法で取得できます。1つの方法は **メタデータをエクスポート** をJumpCloudの設定でクリックし、ダウンロードしたXMLを開くことです。証明書は `ds:X509Certificate` タグの間にあります。
* また、 **会社ドメイン** も入力して、シングルサインオンURLなしで人がログインできるようにしてください。

![IDプロバイダーの詳細を設定するためのSAML認証設定フォーム。](/files/0e38fd9a1ccaf3b189cbf5646e798a8cf4ff39cf)

> 成功です！JumpCloudのSAMLアプリにアクセスできる人は、これでAikidoワークスペースに自動オンボードできるようになります。

### SAMLクライアントを使用してユーザーがログインするための2つのオプション <a href="#id-2-options-for-users-to-login-using-your-saml-client" id="id-2-options-for-users-to-login-using-your-saml-client"></a>

**オプション1. SSOリンクを直接使用**

ログインリンクをコピーして、他のユーザーと社内で共有してください。

![ログインリンクを管理またはコピーするオプションを備えたSAML認証設定。](/files/3be45d87e9f29d5fe9157d43ff6f90932df80083)

**オプション2。** Aikidoのログイン画面に移動し、 **SSO経由でログイン** を選択して、メールアドレスを入力する **重要**：メールアドレスには、設定済みの会社ドメインが含まれている必要があります。

![Google、Microsoft、またはSSOでワンクリックのログインとサインアップ。クレジットカードは不要です。](/files/5328eb6fc4a384e91130e9aa62cb5da8ef879f15)

![Google、Microsoft、メールでのログインオプションがあるログイン画面。](/files/1769900b4df8ab61a95e97537eac3ce47254adfb)

### トラブルシューティング <a href="#troubleshooting" id="troubleshooting"></a>

**エラー**

![SAMLクライアントは既に存在しますというエラー。組織のリンクについてサポートへ連絡するよう促します。](/files/883e1c901dafa4984071995776e4c925c1a78b62)

**解決方法**

次が **Idp Entity ID** 一意であることを確認してください。おそらく `https://console.jumpcloud.com/<samlClientId>`に変更できます。Aikido側でも **Entity ID / Issuer** を変更する必要がある点に注意してください。これらは一致している必要があります。


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://help.aikido.dev/docs/docs-ja/hajimeni/automated-user-management/saml-login/jumpcloud-login-with-saml.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
