Search Results :

×

SAML Single Sign On (SSO) into Drupal using SiteMinder as IDP


Drupal SAML Siteminder SSO setup will allow the user to login to Drupal site using their Siteminder credentials. Drupal SAML module gives the ability to enable SAML Single Sign-On for Drupal. This module is compatible with all SAML Identity Providers (IDP). We provide Drupal SAML SP 2.0 Single Sign on (SSO) - SAML Service Provider module which is compatible with Drupal 7, Drupal 8, Drupal 9 as well as Drupal 10. You can follow the instructions in this guide to configure SAML SSO between Drupal and SiteMinder IDP.

Installation Steps


  • Download the module:
    Composer require 'drupal/miniorange_saml'
  • Navigate to Extend menu on your Drupal admin console and search for miniOrange SAML Service Provider using the search box.
  • Enable the module by checking the checkbox and click on install button.
  • Configure the module at
    {BaseURL}/admin/config/people/miniorange_saml/idp_setup
  • Install the module:
    drush en drupal/miniorange_saml
  • Clear the cache:
     drush cr
  • Configure the module at
    {BaseURL}/admin/config/people/miniorange_saml/idp_setup
  • Navigate to Extend menu on your Drupal admin console and click on Install new module button.
  • Install the Drupal SAML SP 2.0 Single Sign On (SSO) - SAML Service Provider module either by downloading the zip or from the URL of the package (tar/zip).
  • Click on Enable newly added modules.
  • Enable this module by checking the checkbox and click on install button.
  • Configure the module at
    {BaseURL}/admin/config/people/miniorange_saml/idp_setup

Steps to Integrate SiteMinder SAML Single Sign-On (SSO) with Drupal site

1. Configure SiteMinder as SAML Identity Provider

  • In the miniOrange SAML SP SSO module, navigate to Service Provider Metadata tab. Here, you can find the SP metadata such as SP Entity ID and ACS (AssertionConsumerService) URL which are required to configure the Identity Provider.
  • Druapl get SP Metadata
  • Log in to your CA SSO portal as a SiteMinder Single Sign-On administrator.
  • Click on Federation tab.
  • Now go to Partnership Federation Entities.
  •  SiteMinder SAML Single Sign-On SSO into Drupal | Login using SiteMinder into Drupal, Entities Tab

    miniorange img Create a Local Identity Provider

    • Click on Create Entity.
    •  SiteMinder SAML Single Sign-On SSO into Drupal | Login using SiteMinder into Drupal, Create Entity
    • To create a local entity, configure the following using SP metadata from the step above:
    • Entity Location Local
      Entity Type SAML2 IDP
      Entity ID Enter an ID for your local identity provider for identification.
      Entity Name Create a name for your local identity provider.
      Base URL Enter the fully-qualified domain name for the host service
      SiteMinder SSO Federation Web Services.
      Signed Authentication
      Requests Required
      No
      Supported NameID format urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress
      urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified
       SiteMinder SAML Single Sign-On SSO into Drupal | Login using SiteMinder into Drupal, View Entity

    miniorange img Create a Remote Service Provider

    • Download Metadata XML File from the Service Provider Metadata Tab of the miniOrange SAML Single-Sign-On module.
    • Click on Import Metadata and upload the downloaded XML metadata file.
    •  SiteMinder SAML Single Sign-On SSO into Drupal | Login using SiteMinder into Drupal, Import Metadata
    • For Import As, select Remote Entity.
    • Provide a name for the Remote Service Provider Entity.
    •  SiteMinder SAML Single Sign-On SSO into Drupal | Login using SiteMinder into Drupal, Remote Entity

    miniorange img Create a Partnership between SP and IDP

    • For creating a partnership, configure the following:
      Add Partnership Name Enter a name for your partnership.
      (Optional) Description Enter a relevant description for your partnership.
      Local IDP ID Enter the Local Identity Provider ID created while adding a Local Entity.
      Remote SP ID Enter the Remote Service Provider ID created while adding a
      Remote Entity.
      Base URL This field will be pre-populated.
      Skew Time Enter any skew time required by your environment.
      User Directories and Search Order Select the required directories in the required search order.
  • On the Federation Users page, add the users you want to include in the partnership.
  • In the Assertion Configuration section, configure following:
    • Name ID Format: Email Address
    • Name ID Type: User Attribute
    • Value: mail
    • (Optional) Assertion Attributes: Specify any application or group attributes that you want to map to users
  •  SiteMinder SAML Single Sign-On SSO into Drupal | Login using SiteMinder into Drupal, Assertion Attributes
  • In the SSO and SLO section, perform the following steps:
    • SSO Binding: HTTP-POST
    • Transactions Allowed: Both IDP and SP initiated
  •  SiteMinder SAML Single Sign-On SSO into Drupal | Login using SiteMinder into Drupal, Authentication and SSO Binding
  • In the Signature and Encryption section, select Post Signature as Sign Both.

  • miniorange img Activate Partnership

    • In the Federation Partnership List, expand the Action dropdown for your partnership and click Activate.
    • To get the IDP metadata, Click the Action button and click Export Metadata. This data will be used to configure the module.

    You have successfully configured SiteMinder as SAML IDP (Identity Provider) for achieving SiteMinder SSO login into your Drupal Site.

2. Configure Drupal as Service Provider

  • In miniOrange SAML module, go to Service Provider Setup tab. There are two ways to configure the module:
    • miniOrange image By Uploading SiteMinder IDP Metadata File:

      • Click on Upload IDP Metadata.
      • Enter the Metadata URL and click on Fetch Metadata button.
      • Upload metadata file and click on Upload File button.
      • Upload IDP metadata

      miniOrange image Manual Configuration :

      • Provide the required settings (i.e. Identity Provider Name, IDP Entity ID or Issuer, SAML Login URL, X.509 Certificate) as provided by your Identity Provider and click on the Save button.
      • Once you are done with configuration steps, click on the Test Configuration button.
      • Test Configuration

If the test configuration is successful the module is successfully configured. If you face any issues in test configuration you can reach us at drupalsupport@xecurify.com with the screenshot of the test configuration window.

You have succefully configured Siteminder as SAML Identity Provider (IdP) and Drupal as SAML Service Provider.

Additional Features:

Explore the advanced features offered by the module with full-featured trial. You can initiate the trial request using Request 7-day trial button of the module or reach out to us at drupalsupport@xecurify.com for one-on-one assistance from Drupal expert.

 Case Studies
miniOrange has successfully catered to the use cases of 400+ trusted customers with its highly flexible/customizable Drupal solutions. Feel free to check out some of our unique case studies using this link.
 Other Solutions
Feel free to explore other Drupal solutions that we offer here. The popular solutions used by our trusted customers include 2FA, User Provisioning, Website Security. 
  24*7 Active Support
The Drupal developers at miniOrange offer quick and active support for your queries. We can assist you from choosing the best solution for your use case to deploying and maintaining the solution.
Hello there!

Need Help? We are right here!

support
Contact miniOrange Support
success

Thanks for your inquiry.

If you dont hear from us within 24 hours, please feel free to send a follow up email to info@xecurify.com