Skip to main content

App

This feature allows users to access the work system by clicking on the app, creating an app and setting conditional policies. Easy app creation is possible using templates, and SSO functionality for various SaaS apps such as Microsoft 365, Kintone, and Box is also supported through SAML SSO.


App List

This is the screen that displays all registered apps.

Displayed information:

  • App Name
  • Description
  • Representative URL
  • Number of related URLs
  • IAP status
  • Modification Date

App Registration

Create an app to access through SHIELDGate. It offers two methods for registration: manual input and using a template.

Select Registration Method

  1. **[+App Registration]**Click the button.
  2. Two tabs are displayed on the app registration screen:
    • Manual input(Default selection): Create an app by entering all information manually.
    • TemplateCreate an app using the template provided by SOFTCAMP.

Manual input method

Enter the following information in the manual input tab:

Required input fields

Name

  • Enter a unique name that does not duplicate other apps.

Representative URL

  • Enter the main business system URL to access through SHIELDGate.
  • http:// orhttps://를Please make sure to include it.

Optional input fields

Related URL

  • This is used when you want to restrict the domains that can be accessed from the representative URL while allowing specific URLs.
  • For example: If the representative URL is the company intranet, and you want to block access to external sites but allow only specific partner sites or essential work sites.

How to add related URLs:

  1. Direct inputAfter entering the [name] and [URL] information of the related URL,**[+]**Click the button to add.
  2. Select URL: **[Select URL]Click the button → Search for the list of URLs provided by SOFTCAMP in the search box and select →[Select]**Button click
  • The added related URLs will be displayed in the list, and multiple URLs can be added.
  • You can remove unnecessary URLs using the delete button on the right side of each item.

URL Automatic Update Guide

  • The URL provided by SOFTCAMP will be automatically updated if the URL information changes.
  • The manually entered URL does not update automatically and must be managed manually by the administrator.

Description

  • Enter a description for the app.

App Group

  • To manage apps in a group, select an existing group or create a new group.

Using IAP (Identity-Aware Proxy)

  • IAP is a security feature that verifies the user's identity and controls access to the application.
  • You can toggle the application of IAP for the representative URL and each associated URL.
  • Activating IAP will require additional authentication steps when accessing the corresponding URL.

App Icon

  • Select from the default icons or upload a custom image.
  • Up to 8 user images can be registered.
  • Recommended specifications: 70x60px, JPG/PNG/SVG/ICO format, under 1MB

After entering all the information, click **[Save]** to create the app.


Template method

By selecting the template tab, you can utilize various SaaS app templates provided by SOFTCAMP.

Step 1: Select a template

  • A list of templates organized by category will be displayed.
  • Each template includes a name, description, representative URL, related URL, and category information.
  • Select the desired template.

Step 2: Load Template Information

The information of the selected template is automatically filled in the input fields:

  • App Name: Editable
  • Description: Editable
  • Representative URL: Editable
  • Related URLs: URLs included in the template are automatically added.

Step 3: Information Customization

  • You can delete unnecessary related URLs.
  • You can search for additional URLs needed for your work and add them or enter them manually.
  • You can modify the app name, description, and representative URL.
  • Set additional options such as app group, IAP settings, etc.

Template URL Update Notice

  • The associated URLs retrieved from the template are managed by SOFTCAMP, and will be automatically updated if the URL information changes.
  • If you do not want automatic updates, delete the URL and manually enter the same address.

Step 4: Save

After completing all settings __PH_0__**[Save]**Click to create an app.


App Edit/Delete

  1. Click on the app you want to edit from the app list.
  2. Modify the information in the app modification slide.
  3. **[Save]**Click to save the changes.
  4. To delete the app,**[Delete]**Click the button.

SSO App Registration

We are adding an app that provides SSO (Single Sign-On) functionality for various SaaS services such as Microsoft 365, Kintone, and Box.

Prerequisites

Service display conditions:

Microsoft 365 Service

  • The administrator must be logged into SHIELDGate with a Microsoft account.
  • The federation setup between SHIELDGate and Microsoft Azure AD must be completed.
  • If all the above conditions are met, registration for the Microsoft 365 app is possible.

Other services (Kintone, Box, etc.)

  • The SAML client for the service must be pre-registered.
  • Individual SAML client registration is required for each service.

SSO app registration process

  1. **[SSO App Registration]**Click the button.

  2. Select the desired service from the SSO service selection dropdown.

    • A list of services grouped by category will be displayed.
    • Microsoft 365 Category: Outlook, Word, Excel, PowerPoint, OneDrive, Teams, etc.
    • Collaboration Tool Category: Kintone, Box, etc.
  3. Information is automatically configured according to the selected service:

    • App NameThe selected service name is entered as the default value and can be modified.
    • App IconThe fixed icon of the selected service is automatically displayed and cannot be changed.
  4. Entering additional information:

    • Description(Optional): Enter a description for the app.
    • Group(Optional): Select an app group or create a new group by clicking the [New Group] button.
  5. **[Save]**Click to complete the SSO app registration.

Domain Unit App Registration Guide

Multiple domains can be connected to a single Microsoft tenant. Separate app registrations are required for each domain.

Example: When a.com and b.com exist within the same tenant.

  • Outlook (a.com)
  • Outlook (b.com)
  • Teams (a.com)
  • Teams (b.com)

You can register and manage individual SSO apps for each domain.

SSO App Classification

  • The SSO app in the app list will display an "SSO" badge.
  • You can distinguish it from regular apps by the "SSO App" label in the app details.
  • The "SSO" badge is also displayed on the SSO app in the user page's work system screen.

Group Management

Add Group

You can systematically manage apps by group.

  1. **[+Add > Add App Group]**Click on __PH_0__.
  2. Enter the group name.
  3. **[Check]**Click to create a group.
  4. You can specify the group created when registering/modifying the app.

Group Edit/Delete

  1. Select the checkbox of the group you want to edit/delete from the group list.
  2. Click the edit/delete button that activates at the top.
  3. Modify the group name or delete the group.

The related URL is used with the 'Site Move' option in conditional policies:

Site Navigation SettingsAction
ONFree to navigate to all sites.
OFFLimit navigation to the representative URL and related URLs only.

1. Only internal systems + specific external sites are allowed.

  • Representative URL: Company Intranet
  • Related URLs: Specific external sites needed for work
  • Effect: Can only move from the intranet to designated external sites.

2. Domain Restrictions of SaaS Services

  • Representative URL: SaaS main page
  • Related URL: Subdomains of the SaaS
  • Effect: Restricted to moving only within the SaaS service.

Template Usage Tips

  • The associated URLs provided in the template include the main domains necessary for using the service.
  • Unnecessary URLs can be deleted to narrow the access scope according to the security policy.
  • You can search for and add additional URLs needed for the business process.

Conditional Policy

Set access permissions and usage policies for the created app. For more details, please refer to __PH_0__.**App Conditional Policy**Please refer to the document.