Search Results :

×

Setup OneLogin Single Sign-on with Drupal OAuth Client

Drupal miniOrange SSO integration will allow you to configure Single Sign-On ( SSO ) login between your Drupal site and OneLogin using OAuth/OpenID protocol. Drupal OAuth 2.0/OpenID connect module gives the ability to enable login using OAuth 2.0/OIDC Single Sign-On to Drupal Site. We provide the Drupal OAuth/OpenID Client module for Drupal 7, Drupal 8, Drupal 9 and Drupal 10, Drupal 11.

Configure Drupal as an OAuth Client

  • Sign in to your OneLogin Admin console.
  • Navigate to Applications and select Applications on hover.
Onelogin OpenID Single Sign-On Login - Click Applications -> Applications
  • Click on the Add App button.
Onelogin OpenID Single Sign-On Login - Click on Add App button to build a new application
  • In the search box, enter OpenId Connect and click on the OpenId Connect ( OIDC) link.
Onelogin OpenID Single Sign-On Login - Search for OpenId Connect -> Select OpenId Connect (OIDC)
  • By default, the Display Name is pre-filled with OpenId Connect (OIDC). Please Enter an appropriate display name, scroll to the bottom, provide a Description, and click on the Save button.
Onelogin OpenID Single Sign-On Login - Enter Display name and click on Save
  • From the left navigation panel, click on the Configuration.
Onelogin OpenID Single Sign-On Login - Click on Configuration
  • Paste the copied Callback/Redirect URL into the Redirect URI's text field and click on the Save button.
Onelogin OpenID Single Sign-On Login - Paste the copied Callback URL into Redirect URI's field
  • From the left navigation panel, click on the SSO tab.
Onelogin OpenID Single Sign-On Login - Click on SSO
  • From the Enable OpenID Connect section copy the Client ID and Client Secret. Keep it handy. It will be required later.
Onelogin OpenID Single Sign-On Login - On the Enable OpenID Connect section, copy the Client ID and secret

  • Go to the Onelogin Dashboard.
  • Navigate to the Users tab in the top menu and select Users on hover.
Onelogin OpenID Single Sign-On Login - Navigate to Users -> Select Users
  • Search for users in the search box, and then select the user to whom you want to grant access.
Onelogin OpenID Single Sign-On Login - Search for users and select the user to whom you want to assign access
  • From the left navigation menu, click on the Applications.
Onelogin OpenID Single Sign-On Login - Click on Applications
  • Under Applications, click the Plus (+) sign button.
Onelogin OpenID Single Sign-On Login - Under Application -> Click on Plus(+) sign
  • On the popup, select the application from the dropdown list for which you want to enable SSO for that assigned user, and then click the Continue button.
Onelogin OpenID Single Sign-On Login - Select the app from the dropdown for which you want to enable single sign-on for that assigned user
  • On the next screen, check the box to Allow the user to sign in and then click on the Save button.
Onelogin OpenID Single Sign-On Login - Enabling the checkbox Allow the user to sign in -> click on Save
  • The user has been assigned to your application.
  • Go to Drupal's Configure OAuth and paste the copied Application ID and Client secrets into the Client ID and Client Secret text fields.
Drupal OAuth OIDC Client Configuration - Paste it into the Client ID and Secret
  • In the Endpoint URLs replace ‘’ with the OneLogin subdomain.
  • You can refer to the OneLogin Endpoints and Scope from the table given below:
  • Scope openid
    Authorize EndPoint https://{site-url}.onelogin.com/oidc/2/auth
    Access Token Endpoint https://{site-url}.onelogin.com/oidc/2/token
    UserInfo Endpoint https://{site-url}.onelogin.com/oidc/2/me
  • The 'Send Client ID and Secret in Header or Body' checkbox allows you to specify whether the Client ID and Secret should be included in the header or the body of the Token Endpoint Request. If you're unsure which option to select, you can stick with the default settings.
  • Click on the checkbox to Enable Login with OAuth, scroll down, and click the Save Configuration button.
Drupal OAuth OIDC Client Configuration - Paste the OAuth 2.0 token Endpoint and OAuth 2.0 token endpoint in the corresponding text fields

Integrating Drupal with OneLogin:

  • Go to miniOrange OAuth Client module.
  • In Add tab, paste the copied Client ID and Client Secret from OneLogin in the Client ID and Client Secret text-field.
Drupal-Auth-SSO-OneLogin-Paste-Client-Credentials

  • In the Endpoint URLs replace ‘’ with the OneLogin subdomain.
  • You can refer to the OneLogin Endpoints and Scope from the table given below:
  • Scope openid
    Authorize EndPoint https://{site-url}.onelogin.com/oidc/2/auth
    Access Token Endpoint https://{site-url}.onelogin.com/oidc/2/token
    UserInfo Endpoint https://{site-url}.onelogin.com/oidc/2/me
Okta OAuth/OIDC Single Sign On - Paste Realm Name and Domain Save Configuration

  • The Send Client-ID and Secret in checkbox allows you to specify whether the Client ID and Secret should be included in the header or the body of the Token Endpoint Request. If you're unsure which option to select, you can stick with the default settings.
  • Click on the checkbox to Enable Login with OAuth, scroll down, and click the Save Configuration button.
Drupal OAuth OpenID OIDC Single Sign On (SSO) Enabling the Login with OAuth checkbox and click Save Configuration

Test Connection between Drupal and OAuth Provider


ADFS_sso ×
Hello there!

Need Help? We are right here!

support