Single Sign-On (SSO) For Shopify Using GSuite as Identity Provider

Single Sign-On (SSO) For Shopify Using GSuite as Identity Provider


Single Sign-on(SSO) with Gsuite as Identity Provider for Shopify as Service Provider, miniOrange provides a ready to use solution for Shopify Store. This solution ensures that you are ready to roll out secure access to Shopify Store using Gsuite within minutes.

Pre-requisite : Single Sign On - SSO Application

To configure SSO with Gsuite as IDP, you will need to install the miniOrange Single Sign On - SSO Application on your Shopify store:

miniOrange Provides Secure Single Sign-On (SSO) access to your Shopify applications(both plus and Non plus Stores).


Step by Step guide for Single Sign-On in Shopify Store Using Google apps

1.  Configure miniOrange as Service Provider (SP) in Google Apps

  • Go to https://admin.google.com and login with your G Suite administrator account.
  • Go to Apps from the left menu and click SAML Apps.
  • Google Apps Single Sign On (SSO)
  • Click on the “+” button at the bottom right corner to create a new SAML app.
  • Select button SETUP MY OWN CUSTOM APP.
  • Google Apps Single Sign On (SSO)
  • You will see the Google IdP Information page.
  • Download IDP metadata from option 2. This is necessary for the later configuration of the add-on. You can also copy G Suite details from Option 1 and download the certificate to configure the add-on manually. Click Next.
  • Google Apps Single Sign On (SSO)
  • Enter the Application Name and description. Click Next.
  • Google Apps Single Sign On (SSO)
  • In the next step, Service Provider Details are required.
  • Google Apps Single Sign On (SSO)
  • Go to miniOrange Dashboard in the left navigation menu. Click on Try miniOrange as SP.
  • For SP -INITIATED SSO section Select Show Metadata Details
  • . Google Apps Single Sign On (SSO)-Try-miniOrange-as-SP Google Apps Single Sign On (SSO)-SPintiatedMetadata
  • Enter the values in basic SAML configuration as shown and Click Next.
  • Entity ID Entity ID or Issuer
    ACS URL (Assertion Consumer Service URL) ACS URL
    NameId Format Unspecified

  • Configure attributes by clicking on ADD NEW MAPPING.
  • Add mapping for first name and last name.
  • Click Finish.
  • Google Apps Single Sign On (SSO)
  • Go to SAML Apps again and select the app you just created.

  • Google Apps Single Sign On (SSO)
  • Click on the menu against your app and select ON for everyone or ON for some to activate SSO.

2.  Configure Google Apps as Identity Provider (IDP) in miniOrange

  • Now go to your Shopify store and click on Setup IDP button in the top left in navigation bar.
  • Single Sign-On (SSO)for Shopify (Plus and Non Plus), Configure IDP for enabling Single Sign-On (SSO)
  • From the left navigation bar select Identity Provider.
  • Google Apps Single Sign On (SSO)
  • Select SAML. Click on Import IDP metadata.
  • Salesforce Saml App
  • Enter IDP name and and browse for the file downloaded in step 1. Click on Import.
  • If you don't have metadata file, you can also provide the details manually. You need to configure following endpoints:
  • IDP Entity ID Entity ID of IDP
    Single Login URL Login Url from IDP
    Single Logout URL Logout Url from IDP
    X.509 Certificate The public key certificate of your IDP.
  • Click on Save.

3.  Test Connection

  • Go to Identity Providers tab.
  • Click on Select>>Test Connection option against the Identity Provider you configured.
  • Gsuite-IDP-TestConnection
    Google Apps Single Sign On (SSO)-login
  • On entering valid Google Apps credentials you will see a pop-up window which as shown in below screen.
  • SucessTestConn-Google-IDP
  • Hence your configuration of Google Apps as IDP in miniOrange is sucesssfully completed.

Choose your preferred Identity Provider and start setting up SSO for Shopify right away


Additional Resources


If you are looking for anything which you cannot find, please drop us an email on shopifysupport@xecurify.com

Hello there!

Need Help? We are right here!

support
Contact miniOrange Support
success

Thanks for your inquiry.

If you dont hear from us within 24 hours, please feel free to send a follow up email to info@xecurify.com