> For the complete documentation index, see [llms.txt](https://docs.keeper.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.keeper.io/sso-connect-on-prem/jp/identity-provider-setup/centrify-configuration.md).

# Centrifyの設定

CentrifyとのKeeperオンプレミスSSOコネクト連携設定

{% hint style="info" %}
Centrifyとの完全なクラウドベースの統合については、[KeeperクラウドSSOコネクト](https://docs.keeper.io/sso-connect-cloud/jp/)をご参照ください
{% endhint %}

### Centrify

クラウドログインを使用して、Centrifyの**Admin Portal**にログインします。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-4c418a9061cf556aef5bfd9b28687b9100511d72%2Fsso-step-123b.png?alt=media" alt=""><figcaption></figcaption></figure>

プルダウンメニューから**Admin Portal**に切り替えます。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-5b42b74d5cfa95e3f5f512c189253902131b50a6%2Fsso-step-124b.png?alt=media" alt=""><figcaption></figcaption></figure>

**Quick Start Wizard**が表示された場合は閉じます。メニューから **\[Apps]** を選択し、 **\[Add Web Apps]** を選択します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-a2331b4639ad70359a7d2d969d463f4bee223aa1%2Fsso-step-125b.png?alt=media" alt=""><figcaption></figcaption></figure>

**Add Web Apps**ウィンドウで **\[Custom]** タブを選択し、下にスクロールしてSAMLの **\[Add]** を選択します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-2fd3024ef8b119695f7ba9527f359ce34e85c8b4%2Fsso-step-126b.png?alt=media" alt=""><figcaption></figcaption></figure>

「Do you want to add this application?」と表示されたら、 **\[Yes]** を選択します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-341075870d16dff77f930b1740cc63c149f8d5cd%2Fsso-step-127b.png?alt=media" alt=""><figcaption></figcaption></figure>

**Add Web Apps**ウィンドウを閉じます。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-ed6c8b7da286b247c6a648a57a551237bdf52d7d%2Fsso-step-128b.png?alt=media" alt=""><figcaption></figcaption></figure>

以下の手順で、KeeperのSSOメタデータをCentrifyにアップロードします。\
\
Keeper SSOコネクトで、 **\[メタデータをエクスポート]** リンクを使用してKeeper SSOコネクトメタデータをエクスポートし、以降の手順のためにこのファイルを保存します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-475ba8415ce6c622f87960155b52980ab7693d69%2FConfig_1_D.png?alt=media" alt=""><figcaption></figcaption></figure>

Centrifyの **\[SAML Application Settings]** セクションで、 **\[Upload SP Metadata]** を選択します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-208b8cb20ab75459ca2586c6f373806ae692ce1b%2Fsso-step-130b.png?alt=media" alt=""><figcaption></figcaption></figure>

**\[Upload SP Metadata from a file]** を選択し、KeeperSSOMetadata.xmlファイルを参照します。 **\[OK]** を選択します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-b798a584a42b393e064310ac11d0b4d7e3f9a0bd%2Fsso-step-131b.png?alt=media" alt=""><figcaption></figcaption></figure>

Identity Provider SAML Metadataをダウンロードします。これがKeeper SSOコネクトにアップロードされます。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-79f28200560b65f74161371193e02e7c8ca5d9de%2Fsso-step-132b.png?alt=media" alt=""><figcaption></figcaption></figure>

**Description**セクションで、**Application Name**フィールドに**Keeper SSO Connect**と入力し、**Category**フィールドで **\[Security]** を選択します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-601fc7dfe304e2a1fbd1b5a9022980d4459b0188%2Fsso-step-133b.png?alt=media" alt=""><figcaption></figcaption></figure>

Keeperのロゴをダウンロードします。\
\
**\[Select Logo]** を選択して、Keeperのロゴ (keeper60x60.png) をアップロードします。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-9f86d6a675ab43339d9049fcb401820be9a0c049%2Fsso-step-134b.png?alt=media" alt=""><figcaption></figcaption></figure>

**\[User Access]** セクションで、Keeperアプリにアクセスできるロールを選択します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-fd702e97777918a1af3e974094241abe03fffc66%2Fsso-step-135b.png?alt=media" alt=""><figcaption></figcaption></figure>

**Account Mapping**セクションで、「Use the following Directory Service field to supply the user name」を選択して**mail**と入力します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-d51e534d44c416400ae40f52965dd7dd0ecc6916%2Fsso-step-136b.png?alt=media" alt=""><figcaption></figcaption></figure>

**\[Advanced]** セクションで、以下のコード行を含むスクリプトを追加します。

```
setAttribute("Email", LoginUser.Get("mail"));
setAttribute("First", LoginUser.FirstName);
setAttribute("Last", LoginUser.LastName);
setSignatureType("Response");
```

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-1fa156d5ecfd4454450a1ff5fb3852040577fb3e%2Fsso-step-137b.png?alt=media" alt=""><figcaption></figcaption></figure>

* 上記のスクリプトは、**User Account**セクションから表示名を読み取ります。FirstName属性はDisplayNameの最初の文字列から、LastName属性は2番目の文字列から取得します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-162b9d2c03bdfb858a8daa052e139157782731ea%2Fsso-step-138b.png?alt=media" alt=""><figcaption></figcaption></figure>

**\[Save]** を選択して設定を完了します。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-a3cec3422df2d70015a7330bae3f8eddd4b558e8%2Fsso-step-139b.png?alt=media" alt=""><figcaption></figcaption></figure>

ファイルを設定画面にドラッグアンドドロップして、IDプロバイダのSAMLメタデータファイルをKeeper SSOコネクトインターフェースにアップロードします。

<figure><img src="https://2257682436-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FpnnyqlSSLL0TJdycg6le%2Fuploads%2Fgit-blob-edb6e6efcd2a6abe761c2ee6b93218ad19b25ccf%2Fsso-step-140b.png?alt=media" alt=""><figcaption></figcaption></figure>

**\[保存]** を選択して、Keeper SSOコネクトの設定は完了です。


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.keeper.io/sso-connect-on-prem/jp/identity-provider-setup/centrify-configuration.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
