pantheon-systems / wp-saml-auth

Rock-solid SAML authentication for WordPress built on a modern foundation.
https://wordpress.org/plugins/wp-saml-auth/
89 stars 43 forks source link

Google SAML failing with multiple accounts #292

Open Gleydar opened 2 years ago

Gleydar commented 2 years ago

Currently, I have the issue that G-Suite login doesn't work correctly if multiple accounts are present on the system. The Google account chooser pops up, but upon selecting the correct account there is always the error 403 - service not configured for this account. The configuration for the service in the Google Admin panel is correct. This issue persists with multiple Chrome accounts. I suspect that the original issue lays with Google, however, I was unable to get help or confirmation from Google Support.

I found that enabling "forceAuthn" mitigates this issue. I have created a merge request #291 to add this setting and a little explanation to the plugin setting page to prevent me having to configure everything separate config.