Drupal SAML SP module gives the ability to enable SAML Single Sign-On for Drupal site. Drupal SAML SP module is compatible with all SAML Identity Providers. Here we will go through a guide to configure SSO between Drupal and PingFederate / PingOne. By the end of this guide, Ping One users should be able to log in and register to Drupal site.
All the information required to configure the PingOne i.e. plugin’s metadata is given in the Service Provider Metadata tab of the miniOrange plugin.
Provide the SAML configuration details for the application.
1.Signing. In the dropdown list, select the signing certificate you want to use.
2.SAML Metadata. Click Download to retrieve the SAML metadata for PingOne. This supplies the Ping One connection information to the application.
3.Protocol Version. Select the SAML protocol version appropriate for your application.
4.Upload Metadata: There are 3 ways to provide service provider metadata to PingOne
I.Encrypt Assertion. If selected, the assertions PingOne sends to the SP for the application will be encrypted.
II.Encryption Certificate: Upload the certificate from miniOrange plugin to use to encrypt the assertions.
III.Encryption Algorithm: Choose the algorithm to use for encrypting the assertions. We recommend AES_256 (the default), but you can select AES_128 instead.
IV.Transport Algorithm: The algorithm used for securely transporting the encryption key. Currently, RSA-OAEP is the only transport algorithm supported.
V.Force Re-authentication. If selected, users having a current, active SSO session will be re- authenticated by the identity bridge to establish a connection to this application.
By Metadata URL:
By uploading Metadata XML file:
|Identity Provider Name:||Enter your IdP name. For example : PingOne|
|SAML Login URL:||The SSO URL that you noted while configuring the Drupal site in PingOne.|
|IdP Entity ID or Issuer:||The Entity ID that you noted while configuring the Drupal site in PingOne.|
|X.509 Certificate:||Open the downloaded certificate in the Notepad. Copy/paste the entire content of the file here.|
If you don't find what you are looking for, please contact us at firstname.lastname@example.org or call us at +1 978 658 9387.