SAML Single Sign-On (SSO) into Drupal using PingOne as IdP
Overview
The Drupal SAML integration using the miniOrange SAML SP module establishes seamless SSO between PingOne and the Drupal site. The users will be able to log in to the Drupal site using their PingOne credentials. This document will walk you through the steps to configure Single Sign-On - SSO between Drupal as a Service Provider (SP) and PingOne as an Identity Provider (IdP). The module is compatible with with Drupal 7, Drupal 8, Drupal 9, Drupal 10 and Drupal 11.
Installation Steps
- Using Composer
- Using Drush
- Manual Installation
Configuration Steps
Drupal SAML SP Metadata:
- Go to Configuration → People → SAML Login Configuration in the Administration menu. (/admin/config/people/miniorange_saml/idp_setup)
- Under the Service Provider Metadata tab, click the Download XML Metadata button to download the metadata file. (This is required to configure IdP.)
Configure SAML Single Sign-On Application in PingOne
- Sign in to your PingOne admin console as the Administrators.
- Go to the Overview tab on the left and choose Add a SAML app.
- Click on the + (Plus sign) in front of Applications.
- Enter the application name and choose SAML Application as the application type in the Add Application window. Then click on the Configure button.
- In the SAML Configuration window select Import Metadata options and upload the metadata file downloaded from Drupal. Then click on the Save button.
- In order to allow the user access to this application, enable the toggle button
- Go to the Configuration tab and click on the Download Metadata button. (This will be required for further configuration of Drupal)
Configure Drupal as Service Provider:
- Open your Drupal site. Go to the Service Provider Setup tab of the module.
- Click on Upload IDP Metadata Section.
- Now upload the metadata file downloaded from the PingOne IdP.
- Click on the Test link to test the connection between Drupal and PingOne.
- In the test configuration window, a success message with SAML response attributes will appear if the configurations are correct; otherwise, error messages with additional troubleshooting instructions will appear. Click on Done.
Congratulations! You have successfully configured PingOne as an Identity Provider and Drupal as a Service Provider.
How does SAML SSO login work?
- Open a new browser/private window and navigate to the Drupal site login page.
- Click the Login using Identity Provider (PingOne) link.
- You will be redirected to the PingOne login page. Enter the PingOne credentials. After successful authentication, the user will be redirected back to the Drupal site.
Why choose us:
[MO_CONTACT_US]