Amela
Minato Group Co., Ltd. — Platform Build Story
ℹ︎ For confidentiality, company names, project names, and system images have been replaced with pseudonyms and mockups.

Scattered internal logins — unified in-house under one ID.

OneGate is a company-wide single sign-on platform (IdP) spanning multiple internal services. Using SAML 2.0 + JWT, it connects securely with existing services, linking employees, IT, and every service.

Unified authentication, service integration, permission management, and multi-factor authentication ─ the launch story of a new platform, built in-house from zero in nine months, that meets all four axes enterprise authentication demands at once.

Unified authentication
1 ID
Common login for all company services
Connected services
8+
SAML 2.0 / JWT integration
Authentication platform uptime
99.9%
Highly available IdP configuration
Delivery model
Web
User portal + admin console
OneGate
M
Registered services (single sign-on)
Business system
Internal portal
Attendance & HR
Expense settlement
Workflow
Knowledge
✓ Single sign-on authenticated · MFA enabled
01
CLIENT
About the client

Minato Group, which operates many internal services.

Minato Group Co., Ltd. is a corporate group with multiple operating companies and many internal systems. Every day, employees juggle numerous services such as business systems, portals, attendance, and expenses.

As the business grows and services multiply, scattered logins and access-permission management burden the IT department. A company-wide authentication platform becomes the foundation for productivity and security.

8+
Connected services
2,300+
User (employee)
1 ID
Common authentication
User authentication flow
STEP 1
Login
To OneGate with one ID
STEP 2
Authentication
MFA + token issuance
STEP 3
SSO integration
To each service via SAML/JWT
STEP 4
Access
Use every service with no re-entry
02
CHALLENGE
Design challenges to solve

The four structural requirements demanded of the authentication platform.

None of these are questions of technology choice; they are business requirements tied directly to productivity, security, and governance. Building anew from zero required a design that satisfies them all at once.

Scattered logins lower productivity
For each service, using separate IDs/passwords, employee effort and forgotten passwords increase.
Granting and revoking permissions is scattered
Handling leaver/transfer permissions manually, service by service, missed updates and security risks remain.
Secure integration with existing services
Integrating with a proprietary approach skips the standards, making existing services and future additions difficult.
Uneven authentication strength
Leaving MFA and certificates to each service, authentication strength becomes uneven and governance breaks down.
03
ARCHITECTURE
The architecture we built together

Toward a platform that unifies authentication across four areas.

We built in-house, from scratch, an experience where user login, authentication, service integration, and permission management flow as one. The IdP, user portal, and admin console were designed as a single whole, satisfying four areas at once.

Amela
EXECUTION
9 months
Duration
84 person-months
Total effort
Area 1
Unified authentication
Challenge
The need to end scattered per-service logins that burden employees.
Solution
SSO to all company services with one ID
Centralize authentication in the IdP and eliminate re-entry.
Area 2
Service integration
Challenge
A proprietary approach can't securely integrate with existing services or future additions.
Solution
Integration compliant with SAML 2.0 / JWT standards
Connect each service securely through certificate management.
Area 3
Permission management
Challenge
Leaver and transfer permissions are scattered across services, causing missed updates.
Solution
Role management by department and position
Centralized granting and revoking apply instantly.
Area 4
Security
Challenge
Authentication strength varies by service, so governance can't take hold.
Solution
Standardize MFA and audit logs in the platform
Guarantee consistent authentication strength and logs company-wide.
BACKEND
Laravel PHP
Authentication
SAML 2.0 JWT
DATA & Infrastructure
MySQL Docker
04
IMPACT
The value the platform creates

Minato Group's productivity and governance improve.

This platform delivers not technical metrics but continuous business outcomes: employee productivity, IT operational efficiency, and company-wide security.

A platform that unifies the login experience
A design that lets one ID access all company services, eliminating forgotten passwords and re-entry.
A platform that centralizes permission management
Apply leaver and transfer permissions instantly, reducing the risk of missed updates.
A platform extensible via standards
SAML/JWT compliance lets new services be added securely.
Raise security across the company
Standardize MFA and audit logs to make governance effective.
🧑‍💼
STAKEHOLDER
Employees
User
Typically
Logging in repeatedly with a separate ID/password for each service.
With OneGate
Use every service with one ID, no re-entry.
Business impact
Daily login hassle disappears
🛠
STAKEHOLDER
Information Systems Dept.
Operations management
Typically
Managing permissions manually for each service.
With OneGate
Manage centrally by role, granting and revoking instantly.
Business impact
Cut operational load and the risk of missed updates
🧩
STAKEHOLDER
Each service administrator
SP owner
Typically
Implementing and maintaining authentication in-house for each service.
With OneGate
Delegate authentication via an SDK and standard integration.
Business impact
Cut authentication development costs sharply
🏢
STAKEHOLDER
Management & Security
Governance
Typically
Authentication strength and logs differ from service to service.
With OneGate
Standardize MFA and audit logs company-wide.
Business impact
Establish company-wide security governance
05
DEMO
Three scenarios

Experience OneGate with a live, working demo.