G Suite / Google Apps as IdP for WordPress

WordPress SAML SP Single Sign-On plugin gives the ability to enable SAML Single Sign-On for your WordPress sites. Our plugin is compatible with all the SAML compliant Identity providers. Here we will go through a step-by-step guide to configure SSO between Wordpress site and Google Apps by considering G-suite / Google Apps as Idp.

miniorange img  Pre-requisites : Download And Installation

To configure Google Apps as SAML IdP with WordPress, you will need to install the miniOrange WP SAML SP SSO plugin:

Step 1: Setup G Suite / Google Apps as Identity Provider

Follow the following steps to Configure G Suite / Google Apps as IdP


miniorange img  Configure G Suite / Google Apps as IdP

  • In the miniOrange SAML SP SSO plugin, navigate to Service Provider Metadata tab. Here, you can find the SP metadata such as SP Entity ID and ACS (AssertionConsumerService) URL which are required to configure the Identity Provider.
  • WordPress SAML Single Sign-On (SSO) upload metadata
  • Go to https://admin.google.com and login with your G Suite administrator account.
  • Go to Apps from the left menu and click SAML Apps.

    SAML Single Sign-On (SSO) using G suite / google apps Identity Provider (IdP), Add SAML app
miniorange img  Add a SAML app

  • Click on the “+” button at the bottom right corner to create a new SAML app.
  • Select button SETUP MY OWN CUSTOM APP

    SAML Single Sign-On (SSO) using G suite / google apps Identity Provider (IdP), Setup own custom app
miniorange img  IDP Information

  • Download IDP metadata from option 2. This is necessary for later configuration of the add-on.
  • You can also copy G Suite details from Option 1 and download the certificate to configure the add-on  manually.
  • Click Next.

    SAML Single Sign-On (SSO) using G suite / google apps Identity Provider (IdP), SAML custom app Basic Information
miniorange img  Service Provider Details

    SAML Single Sign-On (SSO) using G suite / google apps Identity Provider (IdP), Service provider details
  • Enter details from the SP Info tab in the add-on as given below.

    Information to be entered in G Suite Information to copy from the add-on in SP Info tab
    ACS URL ACS URL
    Entity ID SP Entity ID/ Issuer
    Signed Response
    Name ID Format EMAIL
  • Click Next.
miniorange img  Attribute Mapping

  • Click on Add New Mapping
  • Add mapping for first name and last name
  • Click on Finish

    SAML Single Sign-On (SSO) using G suite / google apps Identity Provider (IdP), Attribute mapping details
miniorange img  Turn on

  • Go to SAML Apps again.
  • Click on the menu against your app and select ON for everyone or ON for some to activate SSO

    SAML Single Sign-On (SSO) using G suite / google apps Identity Provider (IdP), Turn-On go to SAML Apps