[WordPress] 外掛分享: Login with Azure – SSO (Azure AD, Azure B2C)

WordPress 外掛 Login with Azure – SSO (Azure AD, Azure B2C) 的封面圖片。

前言介紹

  • 這款 WordPress 外掛「Login with Azure – SSO (Azure AD, Azure B2C)」是 2019-09-26 上架。
  • 目前有 30 個安裝啟用數。
  • 上一次更新是 2022-05-31,距離現在已有 1068 天。超過一年沒更新,安裝要確認版本是否可用。以及後續維護問題!
  • 外掛最低要求 WordPress 3.7 以上版本才可以安裝。
  • 外掛要求網站主機運作至少需要 PHP 版本 5.3 以上。
  • 尚未有人給過這款外掛評分。
  • 還沒有人在論壇上發問,可能目前使用數不多,還沒有什麼大問題。

外掛協作開發者

miniorange |

外掛標籤

sso | Azure | Azure AD | azure b2c | office 365 |

內容簡介

/p>

使用單一登入讓多個 Microsoft 帳戶可登入 (Azure AD/B2C/O365)

Azure AD、Azure B2C、Office 365、Microsoft 365 登入使用 SAML/OAuth 單一登入方式,允許存於 Microsoft Azure 的使用者安全地使用其 Azure AD、Azure B2C、O365、Microsoft 365 帳戶登入 WordPress 網站。
僅具備 Azure AD/Azure B2C/Office 365 認證成功後,外掛程式才會授權使用者並允許他們登入 WordPress 網站。

支援的身份提供者列表

Azure AD (支援 SAML/OAuth/OpenID Connect 單一登入方式進行 WordPress 登入)
Azure AD B2C (支援 SAML/OAuth/OpenID Connect 單一登入方式進行 WordPress 登入)
Office 365 (支援 SAML/OAuth/OpenID Connect 單一登入方式進行 WordPress 登入)
Microsoft 365 (支援 SAML/OAuth/OpenID Connect 單一登入方式進行 WordPress 登入)
ADFS (支援 SAML 單一登入方式進行 WordPress 登入)
還支援實際上任何符合 SAML 規格的身份提供者或 OAuth/OpenID Connect 提供者。

Azure AD SAML 單一登入視訊教學連結:
* 應用程式註冊應用程式
* 企業應用程式

miniOrange Azure AD、Azure B2C、Office 365 登入外掛程式具備 SAML 2.0 服務提供者或 OAuth 客戶端功能,可設定與 Azure Active Directory/Azure B2C 之間的信任關係,安全地驗證 Azure AD、Azure B2C、O365 或 Microsoft 365 使用者登入 WordPress 網站。
All-Inclusive/Enterprise 版本的 Azure AD、Azure B2C、Office 365 登入外掛程式支援 WordPress 多站點環境,以及可能將多個身份提供者/租戶/Azure 企業應用程式與 WordPress 設定為服務提供者。

如果您需要任何單一登入 (SSO) 應用程式,或需要協助安裝此外掛程式,歡迎透過電子郵件聯繫我們: [email protected] 或 聯絡我們。

特色亮點

無限次驗證
使用 SAML/OAuth/OpenID Connect 支援的單一登入
自動建立新使用者/僅允許現有使用者登入/基於 Azure AD 安全群組限制使用者存取網站
內部網路單一登入/外部網路單一登入/wp-login + 單一登入模式/可自訂單一登入按鈕/短碼嵌入
屬性對應/將 Azure AD 安全群組對應至 WordPress 角色
即時從 Azure AD 同步使用者至 WordPress 並設定 /Microsoft Graph API
多租戶或外部網路/ Microsoft 應用程式整合支援
在 WordPress 頁面中嵌入 SharePoint/OneDrive/Delve 資料夾
創建並管理 Azure AD 員工目錄,並即時同步使用者至 WordPress。
使用 WordPress 整合 Microsoft Graph API 以發送電子郵件。
將 WordPress 標籤新增至 Microsoft Teams 以查看 WordPress 內容。
在 WordPress 網站中嵌入 Microsoft Power BI 內容。
保護 WordPress REST API 端點。

原文外掛簡介

ONE LOGIN FOR MULTIPLE MICROSOFT ACCOUNTS (AZURE AD/B2C/O365)
Azure AD, Azure B2C, Office 365, Microsoft 365 Login uses SAML / OAuth Single Sign On to allows users residing at Microsoft Azure to login into your WordPress site securely using their Azure AD, Azure B2C, O365, Microsoft 365 accounts.
Only after successful authentication with Azure AD / Azure B2C, Office 365 the plugin authorizes the users and grants them access to the WordPress site.
List of Supported IdPs

Azure AD (supports SAML / OAuth / OpenID Connect SSO for WordPress login)
Azure AD B2C (supports SAML / OAuth / OpenID Connect SSO for WordPress login)
Office 365 (supports SAML / OAuth / OpenID Connect SSO for WordPress login)
Microsoft 365 (supports SAML / OAuth / OpenID Connect SSO for WordPress login)
ADFS (supports SAML SSO for WordPress login)
and practically any SAML compliant Identity Provider or OAuth / OpenID Connect Providers.

Azure AD SAML SSO Video Guide Links:
* App Registration Application
* Enterprise Application
miniOrange Azure AD, Azure B2C, Office 365 Login Plugin acts as a SAML 2.0 Service Provider or OAuth Client which can be configured to establish the trust between the plugin and Azure Active Directory / Azure B2C to securely authenticate the Azure AD, Azure B2C, O365 or Microsoft 365 users to the WordPress site.
WordPress Multi-Site Environment and the ability to configure Multiple IDPs/tenants/Azure Enterprise applications against wordpress as service provider is also supported in All-Inclusive/Enterprise version of Azure AD, Azure B2C, Office 365 Login plugin.
If you require any Single Sign On (SSO) application or need any help with installing this plugin, please feel free to email us at [email protected] or Contact us.
Feature Highlights

Unlimited Authentications
Single Sign-on Using SAML / OAuth / OpenID Connect Support
Auto-create New Users / Allow only existing users to login / Restrict site access to users based on Azure AD Security groups.
Intranet SSO / Internet SSO / WP-LOGIN + SSO mode / Customizable SSO Button / Shortcode Embedding
Attribute Mapping / Azure AD security groups mapping with WordPress Roles
Real-time User synchronization / provisioning from Azure AD to WordPress using SCIM Protocol / Microsoft Graph API.
Multi-tenant / Extranet / Microsoft Applications integration support
Embed sharepoint / one drive/ delve folders in wordpress page
Create and manage Azure AD Employee Directory in the WordPress site with real-time user synchronization.
Microsoft Graph API integration with WordPress to send emails.
Adding a WordPress tab to Microsoft Teams for viewing the WordPress content.
Embed Microsoft Power BI content in the WordPress site.
Protect WordPress REST API endpoints.
Connect with Multiple IDPs and compatible with Multisite Environment
In-built x509 certificate for Securely Signing SAML Requests and Encrypting the user attributes.
Seamless Integration with BuddyPress / WooCommerce / Learndash / Groups / Memberpress / Paid Membership Pro etc.
SSO Login Audit / Session Manager / Media Files Management

WordPress Single Sign On (SSO)
Single Sign-On (SSO) is an authentication process in which a user can login to multiple applications and/or websites by using only a single set of login credentials (such as username and password). This prevents the need for the user to login separately into the different applications. Single Sign-On addresses the challenge of maintaining the credentials for each application separately, streamlining the process of signing-on without need to re-enter the password.
Azure / O365 Single Sign On supports all kinds of SSO use cases such as Azure login, Azure AD login, Office 365 login, ADFS login, Okta login, OneLogin SSO, Salesforce login, Google Apps login, Keycloak login, Auth0 login, Shibboleth login, PingFederate login, etc. allowing your users to securely login to the WordPress site.
Login with Azure – SSO (Azure B2C, Azure AD) supports SSO with any 3rd party SAML supported Identity Providers like Azure AD, Azure B2C, Office 365, Microsoft 365, ADFS, Okta, Salesforce, Shibboleth, SimpleSAMLphp, OpenAM, Centrify, Ping, RSA, IBM, Oracle, OneLogin, Bitium, WSO2, NetIQ etc.
Free Version Features

Single Sign-On Support – Supports SSO authentication based on SAML 2.0 / OAuth / OpenID Connect.
Auto Create Users – Users will be auto-created in WordPress after SSO
Login Widgets – Use Widgets to easily integrate the login link with your WordPress site.
Attribute Mapping – Map attributes like Email and Username with the claims received from your provider.
Role Mapping – Select default role to assign to users on auto registration.

Standard Version Features

Unlimited Authentications – Unlimited authentication with Azure AD, Azure B2C, Office 365, Microsoft 365, ADFS. Click here for more information.
Advanced Attribute Mapping – Azure AD, Azure B2C, Office 365 Login provides the feature to map your IDP attributes to your WordPress site attributes like Username, Email, First Name, Last Name, Group/Role, Display Name. Click here for more information.
Login Widgets and Short Code – Use Widgets to easily integrate the login link with your WordPress site. Use Short Code (PHP or HTML) generated by Login with Azure – SSO (Azure B2C, Azure AD) to place the login link wherever you want on the site.Click here for more information.
Step-by-step Guides – Use step-by-step guide to configure Azure AD, Azure B2C, Office 365, Microsoft 365, ADFS.Click here for more information.
Intranet / Auto-redirect to IDP [Protect Complete Site] – Users trying to access WordPress site will be redirected to the Identity Provider for SSO.Click here for more information.
Internet / Protect WordPress login page – Users trying to access WordPress login page will be redirected to the Identity Provider for SSO.Click here for more information.
Customize SP Configuration – Change SP base URL and SP Entity ID.Click here for more information.
Select Binding Type – Select HTTP-Post or HTTP-Redirect binding type to use for sending SAML Requests.Click here for more information.
Integrated Windows Authentication – Support for Integrated Windows Authentication (IWA) in Azure AD, Azure B2C, Office 365 Login Premium plugin.Click here for more information.

Premium Features of Login with Azure – SSO (Azure B2C, Azure AD, Office 365, Microsoft 365)

Includes all the STANDARD version features.
Role Mapping – Helps you to assign specific wordpress roles to users of a certain group(Self Service Group Management) in your IdP like Azure AD as IdP, Azure B2C as IdP or Office 365 as IdP or Microsoft 365 as IDP. Click here for more information.
Auto-sync IdP Configuration from metadata – Keep your Azure AD, Azure B2C, Microsoft 365 or O365 IDP SAML Configuration and Certificates updated and in sync. Click here for more information.
WordPress Multi-site Support – Multi-Site environment is one which allows multiple subdomains / subdirectories to share a single installation. With multisite premium plugin, you can configure SSO with Azure AD, Azure B2C, Office 365, Microsoft 365, ADFS in minutes for all your sites in a network. While, if you have basic premium plugin, you have to do plugin configuration on each site individually as well as multiple Azure AD tenants for your WordPress site.Click here for more information.
Redirect URL after Login – You can configure the WordPress logins initiated from the Web Console to automatically redirect users to the IdP(Azure AD, Azure B2C, Office 365, Microsoft 365). If multiple IdPs (Azure AD SSO, Azure B2C SSO, Office 365,Microsoft 365 SSO) are available, users choose which Microsoft application IdP validates their credentials.Click here for more information.
Widget to add IDP Login – We customize Add a link or button anywhere on your WordPress site to allow users to authenticate via their Identity Provider.Click here for more information.
Auto Create Users – Users will be auto-created in WordPress after SSO which benefits you in maintaining stream lined account management with Improved Productivity and enhanced security.Click here for more information.
SAML Single Logout – Support for SAML Single Logout (Works only if your IDP supports SLO).Click here for more information.
Intranet / Auto-redirect to IDP [Protect Complete Site] – Users trying to access WordPress site will be redirected to the Identity Provider for SSO.Click here for more information.
Internet / Protect WordPress login page – Users trying to access WordPress login page will be redirected to the Identity Provider for SSO.Click here for more information.
Advanced Role Mapping – Provides the feature to assign WordPress roles to your users based on the security group/role sent by Azure AD, Azure B2C, Office 365.Click here for more information.
Reverse-proxy Support – Support for sites behind a reverse-proxy in WordPress SSO – Office 365 / Azure Login.Click here for more information.
Multiple Certificates – Store Multiple IdP Certificates.Click here for more information.
Custom Certificate – Have your own custom SAML-compliant SP X-509 Certificate.Click here for more information.
Multi-Network Support – Allow multiple Subdomains / subdirectories by sharing a single installation. Configure microsoft applications (Azure AD, Azure B2C, Office 365) for all your sites in a Network.https://www.miniorange.com/wordpress-single-sign-on-(sso)-for-multinetwork
Single Sign-On (SSO) – Easy and seamless access to all resources. WordPress Single Sign On (SSO) via any existing Microsoft applications SAML 2.0 Identity Provider / OAuth / OpenID Connect provider.Click here for more information.

Enterprise Features of Login with Azure – SSO (Azure B2C, Azure AD, Office 365, Microsoft 365)

Includes all the STANDARD version features.
Multiple SAML IDPs Support – We now support configuration of Multiple SAML-compliant IDPs in the plugin to authenticate the different group of users with different IDP’s. You can give access to users by users to IDP mapping (which SAML-compliant IDP to use to authenticate a user) is done based on the domain name in the user’s email. (This is a Enterprise feature with separate licensing. Contact us at [email protected] to get licensing plans for this feature.)
Easy migration from dev to prod – Compatible with multiple environments in a hosting provider like Pantheon, WP-Engine, WordPress VIP. In general, if you make copy of your site then all the configuration will also get copied resulting in interuption of SSO. Using this feature you can easy migrate without breaking the SSO on test/stag/prod site.Click here for more information.
Mu Domain Mapping Support – If you are using WordPress Multisite installation with each subsite using different domain host (Multiple Domain Installation) then SSO can be performed in all the subsites regardless of their domain.Click here for more information.
SAML Single Logout – Support for SAML Single Logout (Works only if your IDP supports SLO).Click here for more information.
Intranet / Auto-redirect to IDP [Protect Complete Site] – Users trying to access WordPress site will be redirected to the Identity Provider for SSO.Click here for more information.
Internet / Protect WordPress login page – Users trying to access WordPress login page will be redirected to the Identity Provider for SSO.Click here for more information.
Advanced Role Mapping – Provides the feature to assign WordPress roles to your users based on the security group/role sent by Azure AD, Azure B2C, Office 365.Click here for more information.
Reverse-proxy Support – Support for sites behind a reverse-proxy in WordPress SSO – Office 365 / Azure Login Premium plugin.Click here for more information.
Multiple Certificates – Store Multiple IdP Certificates.Click here for more information.
Custom Certificate – Have your own custom SAML-compliant SP X-509 Certificate.Click here for more information.
WordPress Multi-site Support – Multi-Site environment is one which allows multiple subdomains / subdirectories to share a single installation. With multisite premium plugin, you can configure SSO with Azure AD, Azure B2C, Office 365, Microsoft 365, ADFS in minutes for all your sites in a network. While, if you have basic premium plugin, you have to do plugin configuration on each site individually as well as multiple Azure AD tenants for your WordPress site.Click here for more information.

All-Inclusive Features of Login with Azure – SSO (Azure B2C, Azure AD, Office 365, Microsoft 365)

Includes all the Enterprise version features.
Customize Metadata Contact Information – You can now customize Organization profile as well as technical details in Service Provider Metadata.
Configuring Plugin using APIs – You can configure the plugin using API calls as well as WP-CLI. It helps you to manage configuration for large number of sites and easily automate the process.
Add-Ons included – You will get the following addons in the license cost itself for extended functionality. It provides functionality ranging from Automatic user provisioning, login audit, session manager, LMS mapper, Page/Post/Media restriction, etc.

Add-ons
We have a variety of add-ons that can be integrated with the WordPress SSO – Office 365 / Azure Login plugin to improve the functionality of your WordPress site.

Page Restriction – This add-on is basically used to protect the pages/posts of your site with SAML-compliant IDP login page and also, restrict the access to pages/posts of the site based on the user roles.
BuddyPress Integration – This add-on maps the attributes fetched from the SAML-compliant IdP with BuddyPress attributes.
LearnDash Integration – This add-on will map the SAML-compliant IdP attributes to the LearnDash attributes.
Media Restriction – This add-on restricts unauthorized users from accessing the media files on your WordPress site.
Attribute based Redirection (ABAC) – This plugin can be used to restrict and redirect users to different URLs based on Azure AD / Azure B2C / Office 365 IDP attributes.
SCIM-User Provisioning – SCIM Auto User Provisioning allows users to sync, Create, Update, delete users from Azure AD or all SCIM capable Identity providers(IdPs) to WordPress sites.
SSO Login Audit – SSO Login Audit captures all the SSO users and will generate the reports.
SSO Session Management – SSO session management add-on manages the login session time of your users based on their WordPress roles.

If you are looking for an SAML-compliant Identity Provider,you can try out miniOrange On-Premise IdP.
You might be interested to know that if you’re a current Office 365, Azure or you’re already using Azure AD – and can use this tenant to manage access to any of the other cloud services with which Azure AD integrates.
Contact us at [email protected] to get add-ons.
Website –
Check out our website for other plugins http://miniorange.com/plugins or click here to see all our listed WordPress plugins.
For more support or info email us at [email protected] or Contact us. You can also submit your query from plugin’s configuration page.

各版本下載點

  • 方法一:點下方版本號的連結下載 ZIP 檔案後,登入網站後台左側選單「外掛」的「安裝外掛」,然後選擇上方的「上傳外掛」,把下載回去的 ZIP 外掛打包檔案上傳上去安裝與啟用。
  • 方法二:透過「安裝外掛」的畫面右方搜尋功能,搜尋外掛名稱「Login with Azure – SSO (Azure AD, Azure B2C)」來進行安裝。

(建議使用方法二,確保安裝的版本符合當前運作的 WordPress 環境。


1.0.0 | 1.0.1 | 1.0.2 | 1.0.3 | 1.0.4 | trunk |

延伸相關外掛(你可能也想知道)

  • WordPress + Microsoft Office 365 / Azure AD | LOGIN 》r WordPress plugins and themes, using the WPO365 | REST API plugin , Customize the login experience with your own logo and message, and create you...。
  • SAML Single Sign On – SSO Login 》WordPress Single Sign On (WordPress SSO) 是一個外掛程式,可以與我們的 SAML Single Sign On - SSO Login 外掛程式一起使用,實現與 Azure AD、Azure AD B...。
  • Login for Google Apps 》Google應用登錄允許現有的WordPress使用者使用Google進行帳戶驗證來登錄您的網站以實現安全認證。這意味著,如果他們已經登入Gmail,他們可以通過WordPress登...。
  • OneLogin SAML SSO 》這個 SAML 外掛可消除密碼,允許您驗證 WordPress 使用者(通常是編輯人員)與現有的 Active Directory 或 LDAP 伺服器進行身分驗證,同時使用 OneLogin、Yub...。
  • OAuth Single Sign On – SSO (OAuth Client) 》使用 WordPress SSO(單一登入)與 OAuth 和 OpenID Connect 插件,無限制地與以下提供者進行登錄和 SSO:Azure AD、Azure B2C、Office 365、AWS Cognito、Cl...。
  • Log in with Google 》這是一個極簡化的外掛,讓您的使用者可以使用他們的 Google 帳戶登入 WordPress 應用程式,不再需要記住笨重的密碼!, 初始設置, , , 如果尚未存在,請從 Goo...。
  • Next Active Directory Integration 》Next Active Directory Integration 可以讓 WordPress 對接 Microsoft Active Directory 進行用戶身份驗證、授權、創建和更新。NADI 是其前身 Active Directo...。
  • WP Discourse 》WP Discourse 外掛作為 WordPress 網站與 Discourse 社群之間的介面。, 使用 Discourse 作為留言系統:, , 當新的博客文章發佈時,自動建立一個論壇主題以供...。
  • Login using WordPress Users ( WP as SAML IDP ) 》使用 WordPress 用戶登錄 SAML ( WP as SAML IDP ) 提供 SAML 功能,讓 WordPress 用戶可以使用 WP 用戶認證登錄到符合 SAML/WS-FED/JWT 標準的服務提供方。,...。
  • Webo-facto 》這個外掛可與您的 WordPress 網站連接至 webo-facto 工作空間,webo-facto 是一個數位活動管理程式,將創建、託管和維護所有網路專案所需工具集成至單一介面...。
  • Maestro Connector 》作為一個專業的網站開發人員,當你的業務不斷增長時,管理多個用戶和網站可能變得繁瑣。在各個網站之間跟蹤用戶名、密碼、主題、外掛程式、補丁和更新,通常...。
  • SSO for Azure AD 》這款外掛允許使用者透過 OAuth,使用 Azure AD 帳戶驗證登入網站。, 在 Azure AD 服務入口網站需先註冊應用程式,方可使用這款外掛。, 警告:訪客使用者和使...。
  • WordPress OpenID Connect Client 》WordPress OpenID Connect (OIDC / openidconnect) 客戶端外掛可讓任何符合 OpenID Connect 1.0 標準的 OpenID Connect 提供者進行單一登入 (SSO)。, 使用此...。
  • Learnworlds-SSO 》LearnWorlds SSO 外掛程式可以將 WordPress 網站與您的 LearnWorlds 學校連接,實現無縫瀏覽。它會創建帳戶,讓使用者登錄並保持兩個站點的使用者登錄狀態。,...。
  • IDer Login for WordPress 》透過此外掛程式,您可以使用IDer服務提供登入和註冊程序。, 在一般登入按鈕旁邊,會出現一個額外的「使用IDer登入」按鈕。, 該如何運作?, 1. 首先,您需要在...。

文章
Filter
Apply Filters
Mastodon