Search Results :
×This solution provides requirements when you want to perform Single Sign On (SSO) for a user who is present inside Intranet Network and if the user is present outside intranet network he / she must be authenticated using LDAP / WordPress credentials and on top of that Two Factor(2FA) / Multi Factor Authentication(MFA) is performed before Login is successful.
This can be achieved using Kerberos NTLM SSO protocol. Kerberos is an authentication protocol that supports the concept of Single Sign-On (SSO). It is a cryptography-based authentication protocol that is designed to provide secure authentication over an insecure network by allowing users to authenticate while preventing passwords from being sent over the internet. For more details regarding Kerberos Protocol you can check out our guide.
This can be done using reverse proxy. The user is provided with a proxy server URL. Once the user clicks on the proxy server URL the user will be able to access the actual WordPress website. The user then needs to enter their LDAP / WordPress credentials. Once the authentication is successful a 2FA / MFA prompt appears after validating the user using 2FA / MFA the users will be able to access the website.
In this setup, WordPress acts as a website / web application which is used by user to Single Sign On (SSO) using their LDAP/Active Directory credentials with Kerberos protocol:
The miniOrange WordPress LDAP/AD Login for Intranet sites plugin along with miniOrange WordPress 2FA /MFA plugin, and Kerberos/NTLM add-on, offers a seamless user experience by authenticating users into your WordPress site who may be present inside or outside intranet network using their LDAP Credentials, and doubling down on security with 2 Factor / Multi Factor authentication for users outside intranet network.
LDAP/AD login for intranet sites plugin allows you to Login into a WordPress website using the credentials which are stored in your LDAP server/ Active Directory.
This plugin allows you to Login into a WordPress site hosted on a shared hosting platform using credentials stored in your LDAP server / Active Directory.
The directory search plugin Searches and displays the users present in your Active Directory / LDAP Server on a WordPress page using a shortcode. The users are displayed on the fly.
This plugin offers several functionalities, such as bulk user management, user redirection based on WordPress roles, user session management and many more.
To learn more about the plugin's features and add-ons, click here.
Need Help? We are right here!
Thanks for your inquiry.
If you dont hear from us within 24 hours, please feel free to send a follow up email to info@xecurify.com
This privacy statement applies to miniorange websites describing how we handle the personal information. When you visit any website, it may store or retrieve the information on your browser, mostly in the form of the cookies. This information might be about you, your preferences or your device and is mostly used to make the site work as you expect it to. The information does not directly identify you, but it can give you a more personalized web experience. Click on the category headings to check how we handle the cookies. For the privacy statement of our solutions you can refer to the privacy policy.
Necessary cookies help make a website fully usable by enabling the basic functions like site navigation, logging in, filling forms, etc. The cookies used for the functionality do not store any personal identifiable information. However, some parts of the website will not work properly without the cookies.
These cookies only collect aggregated information about the traffic of the website including - visitors, sources, page clicks and views, etc. This allows us to know more about our most and least popular pages along with users' interaction on the actionable elements and hence letting us improve the performance of our website as well as our services.