https://store-images.s-microsoft.com/image/apps.24747.de7f746d-ff8a-4b37-aaa1-7ab8bccca95a.5efbb6f5-5009-4313-89a8-b5a550891f15.2f95863e-c0ea-4d6d-8abc-9acf9458eb8d

Joomla SAML Single Sign-On (SSO) - Azure AD

Xecurify Inc - Joomla

Joomla SAML Single Sign-On (SSO) - Azure AD

Xecurify Inc - Joomla

Ensure hassle-free and secured login to your Joomla site with miniOrange’s SAML SP SSO Extension.

Joomla SAML Single Sign-On (SSO) enables users to authenticate with Azure AD/B2C Identity Provider (IdP), and then permits them to access the Joomla site without the need to login again.
Application of SAML SSO includes secured access to Joomla sites using IdP credentials such as Azure AD, Salesforce, or Google Workspace.
Let’s take a look at some key features now.


Key Features of Joomla SAML SSO Include

1. Multiple Certificate Support

Allows the Joomla SAML SSO plugin to handle scenarios where Azure AD/B2C might use different certificates for signing its SAML responses at different times.

2. Auto Sync Metadata

Ensure a seamless SSO process by automatically synching and updating IdP configuration within the plugin periodically (hours, days, weeks).

3. Auto Redirect to IdP

When users try to access your protected Joomla site, and they are not yet authenticated, this feature automatically redirects their browser to the IdP login page.


4. Enable SSO for '/administrator ' URL

Enhance the security of your site by enabling SSO for the Joomla site’s admins. This feature extends the SAML SSO protection, requiring admins to authenticate through the configured IdP.


5. Domain Mapping/Domain Based Restriction

This feature enables you to control which users from specific domains (email IDs) are allowed to access your application via Joomla SAML SSO plugin.


6. Attribute and Group/Role Mapping

Allows you to map attributes from Azure AD to your Joomla SP site. You can also assign roles/groups to the users and map them on your Joomla site.

7. Supports 5 Authentication Context Class Ref.

The SAML Single Sign-On plugin for Joomla supports 5 Authentication Context class Ref. The AuthnContext and AuthnContextClassRef provides a way for SPs to specify the desired authentication methods in their authentication requests, allowing for more controlled and secure access.


8. Support for Signature Algorithm

This feature allows you to support different signature algorithms used by the IdP. This ensures compatibility with the security policies and configurations of Azure AD as IdP.


9. Add Custom Certificate

Manually upload a custom certificate to the SAML SSO plugin. This is necessary in specific scenarios, such as when the IdP's certificate is not available via a metadata URL or for specific testing or security requirements.

https://store-images.s-microsoft.com/image/apps.57900.de7f746d-ff8a-4b37-aaa1-7ab8bccca95a.5efbb6f5-5009-4313-89a8-b5a550891f15.39eb2154-5172-4bd7-838f-ae357708e26e
/staticstorage/d6b89cc/assets/videoOverlay_7299e00c2e43a32cf9fa.png
https://store-images.s-microsoft.com/image/apps.57900.de7f746d-ff8a-4b37-aaa1-7ab8bccca95a.5efbb6f5-5009-4313-89a8-b5a550891f15.39eb2154-5172-4bd7-838f-ae357708e26e
/staticstorage/d6b89cc/assets/videoOverlay_7299e00c2e43a32cf9fa.png
https://store-images.s-microsoft.com/image/apps.56407.de7f746d-ff8a-4b37-aaa1-7ab8bccca95a.5efbb6f5-5009-4313-89a8-b5a550891f15.93f64303-1f69-4bea-aa49-672fabddafc1
https://store-images.s-microsoft.com/image/apps.14073.de7f746d-ff8a-4b37-aaa1-7ab8bccca95a.5efbb6f5-5009-4313-89a8-b5a550891f15.20d469d0-9934-4fef-a364-f9747f67135a
https://store-images.s-microsoft.com/image/apps.11081.de7f746d-ff8a-4b37-aaa1-7ab8bccca95a.5efbb6f5-5009-4313-89a8-b5a550891f15.54697c24-62fe-4516-91fe-c23017616246
https://store-images.s-microsoft.com/image/apps.44107.de7f746d-ff8a-4b37-aaa1-7ab8bccca95a.5efbb6f5-5009-4313-89a8-b5a550891f15.456e7646-b477-4275-9283-0839b7bcf6a8
https://store-images.s-microsoft.com/image/apps.40729.de7f746d-ff8a-4b37-aaa1-7ab8bccca95a.5efbb6f5-5009-4313-89a8-b5a550891f15.9b4bd4b2-1491-40be-9f98-4aaf85639b7f