{"id":2320,"date":"2021-06-08T18:52:52","date_gmt":"2021-06-08T18:52:52","guid":{"rendered":"https:\/\/domains.stanford.edu\/support\/?p=2320"},"modified":"2021-07-26T23:54:36","modified_gmt":"2021-07-26T23:54:36","slug":"workgroup-integration","status":"publish","type":"post","link":"https:\/\/domains.stanford.edu\/support\/technical\/workgroup-integration\/","title":{"rendered":"What about Workgroup Integration for controlling access to pages?"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">There are probably many different possibilities, but we know about two.<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>In conjunction with \u201c<a href=\"https:\/\/domains.stanford.edu\/support\/technical\/sso\/\">OneLogin SAML SSO<\/a>\u201d (currently described in our SSO support doc, the \u201c<strong>Advance Access Manager<\/strong>\u201d plugin can be used and the base version is both free and very flexible.\u00a0 It would help you define additional roles which you could then use in WordPress with the \u201cOneLogin SAML SSO\u201d to map to workgroup(s). It takes quite a bit more configuration, but looks promising.  See our setup guide &#8220;I<a href=\"https:\/\/docs.google.com\/document\/d\/1S-zti9F5poEXEixaSCqDP6dP10Gh4HzDYaRNw8tBu_w\/\">ntegration SSO With WorkGroup<\/a>&#8221;  to get started with this option.<\/li><li>&#8220;<strong>SAML Single Sign On \u2013 SAML SSO Login<\/strong>\u201d used in conjunction with the &#8216;Advanced Role Mapping&#8217; user plugin that provides similar features.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Both require an SP (Service Provider) IDP with elevated privileges to expose Stanford Workgroup privileges in the SSO reply document when user log in.\u00a0 Both provide the ability to create new roles for which WordPress is aware.  <\/p>\n","protected":false},"excerpt":{"rendered":"<p>There are probably many different possibilities, but we know about two. In conjunction with \u201cOneLogin SAML SSO\u201d (currently described in our SSO support doc, the \u201cAdvance Access Manager\u201d plugin can be used and the base version is both free and very flexible.\u00a0 It would help you define additional roles which you could then use in [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[21],"tags":[],"class_list":["post-2320","post","type-post","status-publish","format-standard","hentry","category-technical"],"_links":{"self":[{"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/posts\/2320","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/comments?post=2320"}],"version-history":[{"count":5,"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/posts\/2320\/revisions"}],"predecessor-version":[{"id":2360,"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/posts\/2320\/revisions\/2360"}],"wp:attachment":[{"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/media?parent=2320"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/categories?post=2320"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/domains.stanford.edu\/support\/wp-json\/wp\/v2\/tags?post=2320"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}