SAML Single Sign-On (SSO) For Shopify Using Auth0 as Identity Provider
Overview
miniOrange allows Auth0 to act as an IDP (Identity Provider), which allows users to Single Sign-On (SSO) into Shopify using Auth0 Credentials. Our application is compatible with all the SAML / OAuth-compliant Identity Providers. We will go through a step-by-step guide to configure Single Sign-On (SSO) into Shopify using Auth0 as IDP (Identity Provider) and Shopify store as SP (Service Provider).
Pre-requisites: Single Sign On - SSO Login Application
To configure SSO into Shopify using Auth0 as IDP, you will need to install the miniOrange Shopify Single Sign On - SSO Login Application on your store.
Check out our video, to know more about how Single-Sign-On works in Shopify.
Configuration Steps
Step by Step guide for Single Sign-On in Shopify Store Using Auth0
Step 1: Configuring Shopify as Service Provider (SP) in Auth0
- Log in to Auth0 dashboard.
- Click on Applications >> Create Application.
- A new window will pop-up. Enter a name for the application and select Regular Web App, then click on Create.
- Select the Addons tab, and enable the SAML2 Web App. It will open up a configuration window.
- For the above SAML configuration you need to get the Entity ID and ACS URL from Shopify.
- Open your Shopify store and navigate to the App section and click on Single Sign On - SSO login application.
- Click on the Add identity Provider button to add your IDP.
- Select SAML protocol.
- From the list of identity providers (IDPs), select Auth0 as your identity provider.
- Click on the Get Metadata to get the service provider (Shopify) metadata.
- For SP-Initiated SSO, note down the required details to configure SSO in Auth0.
- Enter Application Callback URL, Audience, Recipient and other settings using SP entity ID and ACS URL copied from the Shopify SSO application.
Application Callback URL & Recipient | ACS URL |
Audience | SP Entity ID |
- Scroll down and click on Enable >> Save.
- Navigate to the Usage tab. Right-click on the Identity Provider Metadata download link and select the Copy link address option to copy the metadata XML file needed for the SAML plugin setup
You have successfully completed Auth0 side configuration.
Step 2: Configure Auth0 as Identity Provider (IDP) in miniOrange.
- Navigate back to the miniOrange Single Sign On-SSO application and click on Add identity Provider button.
- Select SAML protocol.
- From the list of IDPs, select Auth0.
- Enter the identity provider (IDP) display name.
- Click on the Import IDP Metadata button.
- Select the upload method as Metadata Link. Paste the copied XML file link from Step 1 and Click on Import.
- click on Save.
Step 3: Test Connection
- After saving the IDP configuration, you will be redirected to Test Connection step.
- Please perform Test Connection before mapping or fetching attributes, test connection ensures that your IDP configuration is correct.
- Click on the Test Connection button.
- On entering valid Auth0 credentials you will see a pop-up window which is shown in the below screen.
- Click on the Fetch Attributes button to fetch IDP attribute.
Step 4: Attribute Mapping
- Click on the + Attribute Mapping button to map attributes between Shopify and Auth0.
- Map the attributes by refering the table below:
Attribute Name in Shopify | Choose the attribute from the list of predefined attributes |
Attribute Type | IDP Attribute |
Attribute Value | Select the attribute value you have fetched from your IDP |
- Click on Save.
- Navigate to the application home page. Go to More actions against the IDP you have configured and click on Make Default button to make the IDP default.
Step 5: Testing SSO
- Go to your Shopify Store login page.(https://<your-shopify-storedomain>/account/login)
- Click on the login button you customized earlier.
- If you encounter an "invalid or missing reCAPTCHA token" error accompanied by a "Something went wrong" message, refer to this FAQ to resolve the error.
- Else, you’ll be redirected to the login page of the IDP you configured in previous step. Log in with your IDP account credentials.
- You’ll be successfully logged in to your Shopify store.
Hence you have successfully configured Shopify Single Sign-On (SSO) using Auth0 as IDP and Shopify as SP using miniOrange Single Sign-On (SSO) login application. This solution ensures that you are ready to roll out secure access to your Shopify store using Auth0 login credentials within minutes.
FAQs
More FAQs ➔I have followed the steps to set IDP but where can I check SSO?
Follow the steps outlined here to configure SSO in Shopify with your preferred IDP.
I installed the Shopify SSO application. I clicked on the “SETUP IDP” option but nothing opened up.
Redirection to any other site might be blocked in the browser. Please follow the steps given here to resolve the issue.
After performing SSO, I want my customers to redirect to the collections or discount offer page.
Follow the steps outlined here to redirect your customer to collections/cart or any other page.
How do I enable the SSO application’s auto redirect to the IDP feature on my Shopify store?
You must upgrade to the SSO application’s Enterprise plan to enable the Auto-Redirect to the IDP feature. Follow the steps outlined here to enable this feature.
Additional Resources
Get in Touch
Please reach out to us at shopifysupport@xecurify.com, and our team will assist you with setting up the Shopify SSO application. Our team will help you to select the best suitable solution/plan as per your requirement.