US English (US)
FR French
DE German
PL Polish
SE Swedish
FI Finnish

Contact Us

If you still have questions or prefer to get help directly from an agent, please submit a request.
We’ll get back to you as soon as possible.

Please fill out the contact form below and we will reply as soon as possible.

English (US)
US English (US)
FR French
DE German
PL Polish
SE Swedish
FI Finnish
  • Log in
  • Home
  • Identity Governance and Administration (IGA)
  • IGA solution library
  • Instructions & guidelines
  • Configure authentication

Configure: Secure Access with Shibboleth IdP authentication

Virtu Authentication

Contact Us

If you still have questions or prefer to get help directly from an agent, please submit a request.
We’ll get back to you as soon as possible.

Please fill out the contact form below and we will reply as soon as possible.

  • Service Management
    Matrix42 Professional Solution Matrix42 Core Solution Enterprise Service Management Matrix42 Intelligence
  • Identity Governance and Administration (IGA)
    IGA overview IGA solution library
  • Platform
    ESM ESS2 ESS Efecte Chat for Service Management Integrations Add-ons
  • Release Notes for M42 Professional, IGA, Conversational AI
    2026.1 2025.3 2025.2 2025.1 2024.2 2024.1 2023.4 2023.3 2023.2 2023.1 2022.4 2022.3 Release Information and Policies
  • Other Material
    Terms & Documentation Guidelines Accessibility Statements
  • Services
+ More
    • Service Management

    • Identity Governance and Administration (IGA)

    • Platform

    • Release Notes for M42 Professional, IGA, Conversational AI

    • Other Material

    • Services

Configure: Secure Access with Shibboleth IdP authentication

Virtu Authentication

In this article is described instructions for configuring Secure Access component to be able to authenticate Customers end-users to Matrix42 Pro and IGA solutions by using SAML2 and Shibboleth. This process involves authenticating users via cookies and SAML. 

consortium-logo

 

How to Configure Authentication for Shibboleth IdP?

Step-By-Step instructions

Prerequisites

  • Install Shibboleth root ca certificate to Secure Access. Contact Matrix42 for certificate installation.

 

Step-by-step instructions for Secure Access configuration

  1. Login with Secure Access Admin user (main.admin) to URL e.g.  https://domain.com/auth/admin
     
  2. Open Identity Provider settings from the left side panel and choose Add provider, type SAML v2.0  
  3. Set information for new SAML provider
    Set alias, displayname and display order (where to show button on login screen)
    Set SAML entity descriptor url you got from Shibboleth environment
     

    Click Show metadata to validate metadata was correctly fetched from Shibboleth 
     
  4. Click Add to save Identity provider


5. Click Save

6. After above configuration is done, a new login button appears on the Secure Access login page

7. Copy and send Redirect URI to Shibboleth admin (they need that on Shibboleth side configurations)
 

8. Add mappers to Identity Provider
Open Identity provider and go to Mappers tab

Add at least username_mapper, email_mapper, firstname_mapper and lastname_mapper. You need to add also groups_mapper if you want to us Shibboleth groups for Matrix42 Pro and IGA permissions. Mappers attribute names and name formats might not be same as in example screenshots, that depends how Shibboleth is configured to send claims (consult Shibboleth admin for correct values for mappers).
 

Username mapper

email mapper

firstname mapper

lastname mapper

groups mapper

9. Finalize Shibboleth side configurations

10. Test login and logout use cases

 
 

Customer Instructions

We do not provide customer instructions for Shibboleth side configurations as Shibboleth can be configured multiple different ways, depending on environment needs.

 
 

 

esa shibboleth

Was this article helpful?

Yes
No
Give feedback about this article

Table of Contents

Related Articles

  • Configure: User Federation for Authentication
  • Configure: ESA SAML Authentication
  • Configure: OTP Using external application
  • Configure: ESA - Guest Access configuration
  • Configure: Whistleblower Access configuration

Copyright 2026 – Matrix42 Professional.

Matrix42 homepage


Knowledge Base Software powered by Helpjuice

0
0
Expand