> For the complete documentation index, see [llms.txt](https://help.aikido.dev/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://help.aikido.dev/docs/docs-ja/hajimeni/automated-user-management/saml-login/jumpcloud-login-with-saml.md).

# JumpCloud: SAML でログイン

{% hint style="info" %}
この機能は、 **有料の** プランでのみ利用でき、デフォルトでは有効になっていません。この機能を有効にしたい場合は、Aikido内の右下隅にあるチャットからご連絡ください。
{% endhint %}

> Gitプロバイダー経由の自動オンボーディングではなくSAMLログインに切り替えると、GitHub、Bitbucket、またはAzure DevOpsからのチームのインポートは使えなくなります。今後は、AikidoのUIまたは [アクセスプロファイル。でチームを手動で管理する必要があります。](/docs/docs-ja/hajimeni/automated-user-management/saml-login/saml-user-rights-access-profiles-recommended.md)

## アカウントでSAMLを設定する <a href="#setting-up-saml-in-your-account" id="setting-up-saml-in-your-account"></a>

**ステップ 1.** 次へ移動 [**一般設定**](https://app.aikido.dev/settings/account) そして「**SAML認証を有効にする'**

![SAML認証を有効にするオプションがあるワークスペース情報ページ。](/files/ad278b37943846d49d04ea8cb2e5fa6fec2a42c7)

**ステップ 2.** コピー **すべての詳細を** お使いのIDプロバイダーに送信します。以下の手順をご覧ください。

![必要なURLとName ID形式が表示されたSAML認証設定画面。](/files/8ead9fa04fd75445d0fdeb92ad6f5dc363e7059b)

### JumpCloudで続行 <a href="#continue-in-jumpcloud" id="continue-in-jumpcloud"></a>

**ステップ 1.** 次へ移動 **ユーザー認証** > **SSOアプリケーション** をJumpCloud管理ポータルのナビゲーションで開きます。

**ステップ 2.** をクリック **新しいアプリケーションを追加** と検索し **SAML 2.0**。クリック **次へ**.

**手順 3。** を選択します。 **表示ラベル** をクリックします **アプリケーションを保存**.

**手順 4。** をクリック **アプリケーションを設定**.

**ステップ 5.** の **SSO** タブをクリックし、以下の項目を入力してください。

* **Idp Entity ID:** `https://console.jumpcloud.com/<appname>`
* **SP Entity ID:** `https://app.aikido.dev/saml`
* **ACS URL** - **デフォルトURL:** `https://app.aikido.dev/api/saml/saml_auth?samlClientId=...` （Aikidoに表示されているとおり）
* **SAMLSubject NameID:** `メールアドレス`
* **SAMLSubject NameID形式:** `urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress`
* **署名アルゴリズム:** `RSA-SHA256`
* **デフォルトRelayState:** ここは空欄のままでかまいません

![安全なID管理統合のためのSAML 2.0シングルサインオン設定。](/files/7af856eae021f1457861a1a5f631e6eb7ef482a6)

**ステップ 6.** Aikidoで続行しますが、 **保存** をクリックしてこの画面に戻ってもかまいません。

### Aikidoに戻る <a href="#go-back-to-aikido" id="go-back-to-aikido"></a>

* 以下を入力してください：
  * **Entity ID / Issuer:** `https://console.jumpcloud.com/<appname>` （これが、次の項目として入力した内容と一致していることを確認してください **Idp Entity ID** をJumpCloudで設定してください。問題がある場合は、下部のトラブルシューティングセクションをご覧ください）
  * **Single Sign-On URL:** JumpCloudの **IDP URL**で表示されているとおり。 （次のようになります `https://sso.jumpcloud.com/saml2/<appname>`)
  * **X.509証明書**：これはいくつかの方法で取得できます。1つの方法は、 **メタデータをエクスポート** をJumpCloudで開き、ダウンロードしたxmlを開くことです。証明書は `ds:X509Certificate` タグの間にあります。
* また、 **会社ドメイン** も入力して、シングルサインオンURLがなくてもログインできるようにしてください。

![IDプロバイダーの詳細を設定するためのSAML認証設定フォーム。](/files/0e38fd9a1ccaf3b189cbf5646e798a8cf4ff39cf)

> 成功です！あなたのJumpCloud SAMLアプリにアクセスできる人は、これからAikidoワークスペースに自動登録できるようになります。

### SAMLクライアントを使ってユーザーがログインするための2つの विकल्प <a href="#id-2-options-for-users-to-login-using-your-saml-client" id="id-2-options-for-users-to-login-using-your-saml-client"></a>

**オプション1。SSOリンクを直接使用する**

ログインリンクをコピーして、社内の他のユーザーと共有してください。

![ログインリンクを管理またはコピーするためのオプションがあるSAML認証設定。](/files/3be45d87e9f29d5fe9157d43ff6f90932df80083)

**オプション2。** Aikidoのログイン画面に移動し、 **SSO経由でログイン** を選択してメールアドレスを入力する **重要**：メールアドレスには、設定済みの会社ドメインを含める必要があります。

![Google、Microsoft、またはSSOでワンクリックでログイン・サインアップ。クレジットカードは不要です。](/files/5328eb6fc4a384e91130e9aa62cb5da8ef879f15)

![Google、Microsoft、メールでのログインオプションがあるログイン画面。](/files/1769900b4df8ab61a95e97537eac3ce47254adfb)

### トラブルシューティング <a href="#troubleshooting" id="troubleshooting"></a>

**エラー**

![SAMLクライアントが既に存在するエラー。組織のリンクについてサポートに連絡するようユーザーに案内します。](/files/883e1c901dafa4984071995776e4c925c1a78b62)

**解決方法**

が一意であることを確認してください。おそらく次のように変更できます **Idp Entity ID** 。 `https://console.jumpcloud.com/<samlClientId>`。また、Aikido側の **Entity ID / Issuer** でも変更する必要があることに注意してください。これらは一致している必要があります。


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://help.aikido.dev/docs/docs-ja/hajimeni/automated-user-management/saml-login/jumpcloud-login-with-saml.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
