Uploaded image for project: 'PUBLIC - Liferay Portal Community Edition'
  1. PUBLIC - Liferay Portal Community Edition
  2. LPS-73537

SAML Integration With Azure Active Directory

    Details

    • Priority Level:
      Low

      Description

      Description:
      It would be beneficial to allow SAML integration with Azure Active Directory for SSO. Currently, it is understood that this is not possible due to the fact that Liferay requires message level signature in order to authenticate, while Azure Active Directory specifically does not support it:

      https://docs.microsoft.com/en-us/azure/active-directory/develop/active-directory-single-sign-on-protocol-reference#signature

      Based on the following LPS, it was believed that supporting this may allow for the possibility of spoofing. It is unclear whether this is still the case or whether there are alternate options. If possible, it would benefit some users if Liferay allows the message level signature to be disabled or develops an alternate method to connect to Azure AD.
      LPS-47700

      This feature would make it so that clients who have already integrated their other applications with Azure AD can easily add Liferay to their workflow.

      The following scenario illustrates the requested feature:

      1. Deploy SAML 2.0 Provider into environment
      2. Created new custom application in Azure AD
      3. Configure connection to Azure AD via SAML Admin

      Note the following errors in the console after performing these steps:

      "SAML protocol message was not signed, skipping XML signature processing"
      "Inbound message issuer was not authenticated."
      

      End Goal:
      Add integration with Azure AD into the SAML 2.0 Provider.

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                support-lep@liferay.com SE Support
                Reporter:
                justin.bowman Justin Bowman
              • Votes:
                8 Vote for this issue
                Watchers:
                7 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved:

                  Packages

                  Version Package