Free WordPress Social Login with Auth0 pluginFree

100 websitesFree WordPress Social Login with Auth0 plugin by Auth0

This plugin replaces standard WordPress login forms with one powered by Auth0 that enables:

  • Universal authentication
    • Over 30 social login providers
    • Enterprise connections (ADFS, Active directory / LDAP, SAML, Office 365, Google Apps and more)
    • Connect your own database
    • Passwordless connections (using email or SMS)
  • Ultra secure
    • Multifactor authentication
    • Password policies
    • Email validation
    • Mitigate brute force attacks
  • Easy access to your users data
    • User stats
    • Profile data
    • Login history and locations

Technical Notes

IMPORTANT: By using this plugin you are delegating the site authentication and profile handling to Auth0. That means that you won’t be using the WordPress database to authenticate users and the default WordPress login forms will be replaced.

Please see our How It Works page for more information on how Auth0 authenticates and manages your users.

Migrating Existing Users

Auth0 allows multiple authentication providers. You can have social providers like Facebook, Twitter, Google+, and more, a database of users and passwords (just like WordPress but hosted in Auth0), or you can use an Enterprise directory like Active Directory, LDAP, Office365, Google Apps, or SAML. All those authentication providers might give you an email and a flag indicating whether the email was verified or not. We use that email (only if its verified) to associate a previous existing user with the one coming from Auth0.

If the email was not verified and there is an account with that email in WordPress, the user will be presented with a page saying that the email was not verified and a link to “Re-send the verification email.” For either scenario, you can choose whether it is mandatory that the user has a verified email or not in the plugin settings.

Please note: In order for a user to login using Auth0, they will need to sign up via the Auth0 login form (or have an account created for them in Auth0). Once signup is complete, their Auth0 user will be automatically associated with their WordPress user.

Enabling dual (Auth0 and WordPress) login

You can enable the standard WordPress login by turning on the “WordPress login enabled” setting (enabled by default). This will make visible a link on the login page to swap between both. Please note that logins using the standard WordPress form will not be tracked in Auth0.

Usage

Once the plugin is configured, the login form on your wp-login.php page will be replaced with an Auth0 login form automatically. You can add additional login forms on the front-end of your site with widgets and/or shortcodes.

Please note:

  • Only one login form can be displayed on the page at a time.
  • The widget and shortcode login forms will not display if the user is already logged in.
  • After logging in via widget or shortcode, the user will be redirected back to the same page where they logged in instead of the default login URL shown on the settings page.
  • Both widget and shortcode login forms have an option to display a button that triggers the form in a modal.

Widget

You can enable the Auth0 as a WordPress widget in order to show it in a sidebar. The widget inherits the main plugin settings but can be overridden with its own settings in the widget form.

Shortcode

Also, you can use the Auth0 widget as a shortcode in your editor. Just add the following to use the global settings:

[auth0]

Like widgets, shortcode login forms will use the main plugins settings. It can be customized by adding the following attributes:

  • icon_url – A direct URL to an image used at the top of the login form
  • form_title – Text to appear at top of the login form
  • gravatar – Display the user’s Gravatar; set to 1 for yes
  • redirect_to – A direct URL to use after successful login
  • social_big_buttons – Display full-width social login buttons; set to 1 for yes
  • custom_css – Valid CSS to alter the login form
  • custom_js – Valid JS to alter the login form
  • dict – Valid JSON to override form text (see options here)
  • extra_conf – Valid JSON to override Lock configuration (see options here)
  • show_as_modal – Display a button which triggers the login form in a modal; set to 1 for yes
  • modal_trigger_name – Button text to display when using a modal

Example:

[auth0 show_as_modal="1" social_big_buttons="1" modal_trigger_name="Login button: This text is configurable!"]

Author: Auth0

Tags: authentication, login, oauth, social, social login

Source from: WordPress.org