Guide to configure SURFconext as an Identity Provider within Visma
Follow the steps below to configure SURFconext as an Identity Provider within Visma.
Prerequisites
SURFconext account
Enable Visma Connect as a service for your IdP
All of your users under your account in Visma will need a pre-existing account in SURFconext with exactly the same email address.
A. Configure Visma Single Sign-On app with SURFconext
Sign in into Authentication Settings and go to the Single Sign-On page.
Add a MyDomain if not already done.
Click “Add SAML2 identity provider”.
Click on the SURFconext option.

Select the domain name the users will authenticate towards Visma with.

Enable Just-In-Time provisioning to allow users to be created if they don’t already exist in Visma, first time the user authenticates.
Click Save.
Testing Single Sign-On after Visma has made its configuration
To make sure SSO is working, perform this step:
To test SSO access go to your Visma MyDomain e.g. https://example.my.connect.visma.com directly, and then click the Sign in with SURFconext button.