Search Results :

×

SAML Single Sign-On (SSO) into Drupal using SecureAuth as IdP

The Drupal SAML integration using the miniOrange SAML SP module establishes seamless SSO between SecureAuth and the Drupal site. The users will be able to log in to the Drupal site using their SecureAuth credentials. This document will walk you through the steps to configure Single Sign-On - SSO between Drupal as a Service Provider (SP) and SecureAuth as an Identity Provider (IdP). The module is compatible with with Drupal 7, Drupal 8, Drupal 9, Drupal 10 and Drupal 11.

  • Download the module:
    Composer require 'drupal/miniorange_saml'
  • Navigate to Extend menu on your Drupal admin console and search for miniOrange SAML Service Provider using the search box.
  • Enable the module by checking the checkbox and click on install button.
  • Configure the module at
    {BaseURL}/admin/config/people/miniorange_saml/idp_setup
  • Install the module:
    drush en drupal/miniorange_saml
  • Clear the cache:
     drush cr
  • Configure the module at
    {BaseURL}/admin/config/people/miniorange_saml/idp_setup
  • Navigate to Extend menu on your Drupal admin console and click on Install new module button.
  • Install the Drupal SAML SP 2.0 Single Sign On (SSO) - SAML Service Provider module either by downloading the zip or from the URL of the package (tar/zip).
  • Click on Enable newly added modules.
  • Enable this module by checking the checkbox and click on install button.
  • Configure the module at
    {BaseURL}/admin/config/people/miniorange_saml/idp_setup
  • Go to Configuration → People → SAML Login Configuration in the Administration menu. (/admin/config/people/miniorange_saml/idp_setup)
Drupal SAML Single Sign-On - Select miniOrange SAML Login Configuration

  • Navigate to the Service Provider Metadata and download the metadata. (This is required in configuring the SecureAuth as a SAML IdP)
Drupal-Single-Sign-On-Download-the-SAML-SP-Metadata

  • Log in to your SecureAuth IDP Admin console.
  • Now go to Post Authentication tab.
  • In the Post Authentication section, set Authenticated User Redirect to SAML 2.0 (SP Initiated) Assertion.
SecureAuth as SAML IdP - SecureAuth Single Sign-On (SSO) Login for Drupal - Post Authentication
  • In the User ID Mapping section, make the following entries:
  • User ID Mapping Set to Email 1.
    Name ID Format Set to urn:oasis:names:tc:SAML:2.0:nameid-format-unspecified.
    Encode to Base64 Set to False.
SecureAuth as SAML IdP - SecureAuth Single Sign-On (SSO) Login for Drupal - User ID Mapping
  • In the SAML Assertion / WS Federation section, make the following entries:
  • WSFed Reply To /SAML Target URL Enter ACS (Assertion Consumer Service) URL from Service Provider Metadata tab of the module
    SAML Consumer URL Enter SP Entity ID / Issuer from Service Provider Metadata tab of the module
    WSFed/SAML Issuer Enter unique name that identifies the SecureAuth IDP to the application (as the SAML ID). This value is shared with the application and can be any word, phrase, or URL, but must match exactly in the SecureAuth IDP and Drupal configurations. For example, https://secureauthfqdn/realm12
    SAML Recipient Enter Recipient URL from Service Provider Metadata tab of the module
    Sign SAML Assertion Set Sign SAML Assertion to True.
    Sign SAML Message Set Sign SAML Message to False.
 SecureAuth as SAML IdP - SecureAuth Single Sign-On (SSO) Login for Drupal - SAML Assertion
  • Leave the default value in the Signing Cert Serial Number field
  • Set the Domain to the SecureAuth IDP appliance URL or IP Address to download the metadata file. For example, https://secureauthfqdn
SecureAuth as SAML IdP - SecureAuth Single Sign-On (SSO) Login for Drupal - Download Metadata
  • Click on Download link to download the SecureAuth IDP metadata file or note down the given information and keep it handy to configure the Service Provider.

  • Navigate to the Service Provider Setup tab of the Drupal site and click on Upload IDP Metadata..
  • Upload downloaded Metadata file.
  • Click on the Fetch Metadata button.
Paste-the-Metadata-URL-into-the-Upload-Metadata-URL

  • Click on the Test link to test the connection between Drupal and SecureAuth.
Drupal-SAML-Single-Sign-On-Click-on-Test-link-to-verify-the-connection

  • In the test configuration window, a success message with SAML response attributes will appear if the configurations are correct; otherwise, error messages with additional troubleshooting instructions will appear. Click on Done.
Drupal-and-Salesforce-Test-Configurtion-successfully

Congratulations! You have successfully configured SecureAuth as an Identity Provider and Drupal as a Service Provider.

  • Open a new browser/private window and navigate to the Drupal site login page.
  • Click the Login using Identity Provider (SecureAuth) link.
  • You will be redirected to the SecureAuth login page. Enter the SecureAuth credentials. After successful authentication, the user will be redirected back to the Drupal site.

[MO_CONTACT_US]
ADFS_sso ×
Hello there!

Need Help? We are right here!

support
Contact miniOrange Support
success

Thanks for your inquiry.

If you dont hear from us within 24 hours, please feel free to send a follow up email to info@xecurify.com