Fix Moodle Cognito OIDC Login
Budget: $2 – $8 USD
My Moodle platform is already configured to rely on AWS Cognito through the OpenID Connect (OIDC) plugin, yet the authentication flow suddenly stopped working. Right now every user—students, teachers, and several custom roles—hits a login failure as soon as they are redirected back from Cognito.
I need a careful review of the existing OAuth 2 / OIDC setup, a clear diagnosis of why tokens are no longer accepted, and a corrective implementation that gets single sign-on working again without breaking the current role-mapping logic.
Acceptance will be:
• Users with all existing custom roles can sign in from the Moodle login page via Cognito without errors.
• New logins create or update Moodle accounts exactly as before.
• Detailed notes (or Git commits) describe what was fixed or re-configured, so the change is reproducible in staging and future upgrades.
I need a careful review of the existing OAuth 2 / OIDC setup, a clear diagnosis of why tokens are no longer accepted, and a corrective implementation that gets single sign-on working again without breaking the current role-mapping logic.
Acceptance will be:
• Users with all existing custom roles can sign in from the Moodle login page via Cognito without errors.
• New logins create or update Moodle accounts exactly as before.
• Detailed notes (or Git commits) describe what was fixed or re-configured, so the change is reproducible in staging and future upgrades.