Drupal SAML OpenAM SSO | SAML SSO Drupal Using OpenAM


Drupal SAML OpenAM SSO ( Single Sign-on ) setup will allow your user to login to your Drupal site using their OpenAM Credentials. Drupal SAML module gives the ability to enable SAML Single Sign-on for Drupal. This module is compatible with all SAML Identity Providers ( IDP ). We provide Drupal SAML Single Sign on - Service Provider module which is compatible with Drupal 7, Drupal 8 and Drupal 9. Here we will go through a guide to configure SAML SSO between Drupal and AuthAnvil Idp. By the end of this guide, users from your Identity Provider should be able to login into the Drupal site.
If you have any queries or if you need any sort of assistance in configuring the module, you can contact us at drupalsupport@xecurify.com. If you want, we can also schedule an online meeting to help you configure the Drupal SAML Single Sign on - Service Provider SSO Login module.

Features and Pricing

Know more about Drupal SAML Single Sign On - Service Provider module from here.

Pre-requisites: Download

You can download the SAML Single Sign On - Service Provider module from here.

Module Handbook

This detailed Handbook for the SAML Single Sign On - Service Provider module, gives an in depth explanation of the features of the module. You can refer to the handbook at anytime - it is always available to you, either via This link, or directly from the module for quicker access.

1. Install Drupal SAML SP 2.0 Single Sign On (SSO) module

    1.1. Using Composer:

    • Composer require drupal/miniorange_saml
    • Navigate to Extend menu on your Drupal admin console and search for miniOrange SAML Service Provider using the search box.
    • Enable the module by checking the checkbox and click on install button.
    • Configure the module at
      {BaseURL}/admin/config/people/miniorange_saml/idp_setup

    1.2. Using Drush:

    • Download the module:
      drush dl drupal/miniorange_saml
    • Install the module:
      drush en drupal/miniorange_saml
    • Clear the cache:
       drush cr
    • Configure the module at
      {BaseURL}/admin/config/people/miniorange_saml/idp_setup

    1.3. Manual installation:

    • Navigate to Extend menu on your Drupal admin console and click on Install new module button.
    • Install the Drupal SAML SP 2.0 Single Sign On (SSO) - SAML Service Provider module either by downloading the zip or from the URL of the package (tar/zip).
    • Click on Enable newly added modules.
    • Enable this module by checking the checkbox and click on install button.
    • Configure the module at
      {BaseURL}/admin/config/people/miniorange_saml/idp_setup

Steps to configure OpenAM SAML Single Sign-On ( SSO ) Login into Drupal site

1. Setup OpenAM as Identity Provider

Follow the following steps to Configure OpenAM as IdP

    miniorange img Configure OpenAM as IdP

    All the information required to configure the OpenAM i.e. module’s metadata is given in the Service Provider Info tab of the miniOrange SAML module.

      miniorange icon Create OpenAM as a Hosted Identity Provider

          Note: – You can skip this step and navigate to Configure Remote Service Provider if you have already configured OpenAM hosted IDP.

      • Login to the OpenAM admin console.
      • From the REALMS, select realms, under which you want to create hosted IDP. You will be redirected to the Realm overview page.
      • Click on Create SAMLv2 Providers in the Realm Overview page.
      • Drupal OpenAM signle sign on sso realm overview
      • Click on Create Hosted Identity Provider. You will be redirected to the configuration page.
      • Drupal OpenAM sso configuration
  • Configure SAML IDP as given below.
    • Name: Name of the SAML IDP
    • Signing Key: Select the Signing key from the dropdown.
    • New Circle of Trust: Provide a name of the groups of IDP and SP that trust each other.
    • Attribute Mapping: Configure user profile attributes to be sent to the Service Provider application.
    • Drupal OpenAM sso attribute mapping sp application
    • Click on the Configure button on the top right corner.
    • Verify the configuration from the Federation tab of OpenAM.
miniorange icon Configure Remote Service Provider.
  • Login to the OpenAM admin console.
  • From the REALMS, select realms, under which you want to configure your application. You will be redirected to the Realm overview page.
  • Click on Create SAMLv2 Providers.
  • Drupal OpenAM sso SAMLv2 providers
  • Click on Register Remote Service Provider. You will be redirected to the configuration page.
  • Drupal OpenAM sso remote service providers
  • Configure the Service Provider as given below.
    • Where does the metadata file reside: URL.
    • URL of metadata: Configure Drupal module's SAML Metadata here.
    • Circle of Trust: Add to existing.
    • Existing Circle of Trust: Select the Circle of Trust (group) in which your hosted IDP is located.
    • Attribute Mapping: Configure user profile attributes for mapping.
    • Drupal SP OpenAM sso mapping
  • Click on the Configure button on the top right corner.
  • Verify the configuration from the Federation tab of OpenAM.
  • Provide OpenAM SAML Metadata to Service Provider application(Drupal module) and you can download the OpenAM metadata using the URL given below.
    [OpenAM ServerURL]/saml2/jsp/exportmetadata.jsp
    In case if you have multiple realms and hosted identity Provider configured then use the URL given below.
    [OpenAM ServerURL]/saml2/jsp/exportmetadata.jsp?entityid=[IdPentityID]&realm=/realmname

2. Setup Drupal as Service Provider

In the miniOrage SAML Service Provider module, go to Service Provider Setup tab of the module. There are two way to configure Drupal SAML Service Provider SSO module:

    A. By Uploading IDP Metadata
    • Click on Upload IDP Metadata link.
    • Click on Upload Metadata File and click on Upload File to fetch your information.
    • You can either Upload Metadata URLand click on Fetch Metadata button.
    • drupal saml Single Sign On as SP - upload idp metadata
    B. Manual Configuartion
    • Provide the required settings (i.e. Identity Provider Name, Idp Entity ID or Issuer, SAML Login URL and X.509 Certificate ) find to your Identity Provider OpenAM and click on Save Configuration button to save your configuration.
    • Identity Provider Name Enter name of Identity Provider
      Idp Entity ID or Issuer Copy Idp Entity ID / Issuer from OpenAM Dashboard and paste it.
      SAML Login URL Copy Single Sign On URL from OpenAM Dashboard and paste it.
      X.509 Certificate Copy and Download Signing certificate from OpenAM Dashboard and paste it.
      Drupal SAML Service Provider - Manual configuartion

You have successfully configured OpenAM as SAML IdP (Identity Provider) for achieving OpenAM SSO login into your Drupal Site.

In this Guide, you have successfully configured OpenAM SAML Single Sign-On ( OpenAM Login ) choosing OpenAM as IdP and Drupal as SP using miniOrange SAML SP 2.0 Single Sign On (SSO) - SAML Service Provider Login module. This solution ensures that you are ready to roll out secure access to your Drupal site using OpenAM login credentials within secound.

24*7 Active Support

If you face any issues or if you have any questions, please feel free to reach out to us at drupalsupport@xecurify.com. In case you want some additional features to be included in the module, please get in touch with us, and we can get that custom-made for you. Also, If you want, we can also schedule an online meeting to help you configure the Drupal SAML SP Single Sign On (SSO) module.

Additional Resources

Our Other modules

Hello there!

Need Help? We are right here!

support
Contact miniOrange Support
success

Thanks for your inquiry.

If you dont hear from us within 24 hours, please feel free to send a follow up email to info@xecurify.com