SURFconext

Prev Next

Guide to configure SURFconext as an Identity Provider within Visma

Follow the steps below to configure SURFconext as an Identity Provider within Visma.

Prerequisites

  • SURFconext account

  • Enable Visma Connect as a service for your IdP

  • All of your users under your account in Visma will need a pre-existing account in SURFconext with exactly the same email address.

A. Configure Visma Single Sign-On app with SURFconext

  1. Sign in into Authentication Settings and go to the Single Sign-On page.

  2. Add a MyDomain if not already done.

  3. Click “Add SAML2 identity provider”.

  4. Click on the SURFconext option.

SURFconext button

  1. Select the domain name the users will authenticate towards Visma with.

SURFconext configuration

  1. Enable Just-In-Time provisioning to allow users to be created if they don’t already exist in Visma, first time the user authenticates.

  2. Click Save.

Testing Single Sign-On after Visma has made its configuration

To make sure SSO is working, perform this step:

  1. To test SSO access go to your Visma MyDomain e.g. https://example.my.connect.visma.com directly, and then click the Sign in with SURFconext button.