Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: OpenID Connect / OAuth client 3.0.0-alpha9 New alpha version released for module openid_connect (3.0.0-alpha9). Usage Milestone: Google Analytics Module google_analytics crossed 1,000 active installs. Release: Timelinr 1.0.1 Minor update available for module timelinr (1.0.1). Release: GraphQL Compose Codegen 1.1.2 Minor update available for module graphql_compose_codegen (1.1.2). Release: Mapy.com 1.1.3 Minor update available for module mapycom (1.1.3). Release: Ckeditor5 entity browser 3.0.3 Minor update available for module ckeditor5_entity_browser (3.0.3). Release: Ckeditor5 entity browser 3.0.1 Minor update available for module ckeditor5_entity_browser (3.0.1). Release: Ckeditor5 entity browser 3.0.2 Minor update available for module ckeditor5_entity_browser (3.0.2). Release: Teamleader Integration 4.0.2 Minor update available for module teamleader (4.0.2). Module Revived: Entityqueue Buttons 1.1.2 Module entityqueue_buttons updated after 8 months of inactivity (1.1.2).

Group SSO

6 sites No security coverage
View on drupal.org

This module automatically assigns users to Drupal groups and roles based on information provided by an external identity manager, currently supporting the SAML protocol. It maps user attributes from the identity provider to predefined group and role memberships within your Drupal site.

The Group SSO (gsso) module allows you to manage group permissions based on a selected user attribute coming from external Identity Manager using protocols like SAML, OpenIDC and others.

Currently only working with the SAML protocol.

Features

  • Associate user membership to Groups, Group Roles and Roles according to a user attribute from 3rd Party Identity Manager's

About versions
Version 1 of the module should be used with version 1 of the group module
Version 2 (currently there's a dev release) will target version 2 of the group module

Requirements:
- Group

Configuration

First you need to configure groups how you normally do: create group type, configure group content, group roles, etc.

The configuration page can be found in/admin/group/gsso:

  1. Select SAML as SSO type (other types under development)
  2. Choose if you want to update user claims information when it changes (has performance advantages)
  3. Enter the SSO Attribute machine name
  4. Choose which separator in SSO Attribute
  5. Select which user roles should be configured
  6. Fill the matrix with the strings that match the SSO attribute that gives access to group X (rows) and role Y (columns)

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
1
Tracked since
Jan 2026
Latest release
7 months ago
Releases (12 mo)
1 ▲ from 0
Maintenance
Slowing

Releases

Version Type Core Release date
2.0.x-dev Dev 8–11 Jan 3, 2026