Oauth2-O365 other oganizations than mine can connect

Oauth2-O365 other oganizations than mine can connect

by olivier le guevel -
Number of replies: 1

Hello everybody,

im new to moodle , i know nothing bout php and apache....


my moodle is using php7.0 

latest stable moodle version 3.4


i did configure the Oauth2 in moodle and the application in Office 365 following these procedure :

https://docs.moodle.org/34/en/OAuth_2_Microsoft_service

https://docs.moodle.org/34/en/OAuth_2_authentication


i did left the automatic account creation on login, and i did left the openid settings as they were in the Oauth2 service settings.

i didnt change anything in the Oauth2 plugin


i encounter a problem : 

members of my organization can login normaly using O365 credentials. but members of any other O365 organizations can log into moodle too.


thx in advance.


edit : also, in Oauth2 service , no system account is connected




Average of ratings: -
In reply to olivier le guevel

Re: Oauth2-O365 other organizations than mine can connect

by Helen Foster -
Picture of Core developers Picture of Documentation writers Picture of Moodle HQ Picture of Particularly helpful Moodlers Picture of Plugin developers Picture of Testers Picture of Translators

Hello,

Can you try setting allowed email domains (allowemailaddresses) in Manage authentication in the Site administration?

(Regarding the system account, you're right that there is no need to connect one for authentication functionality.)