This guide outlines the setup process for enabling Single Sign-On (SSO) as a login option for Visma Recruit via Visma Connect. By integrating your identity provider (IdP) with Visma Connect, you can configure a secure and seamless login experience tailored to your organization's needs. Below are the necessary steps involved in getting started, provisioning users, and verifying the setup. Visma Connect is a self-service portal which means that the actual setup between your identity provider and Visma Connect is configured and maintained by you as the customer.
Step 1: Verifying setup pre-requisites
Overview
To begin the process, we need to ensure that your organization has access to the Visma Connect portal where SSO configurations can be applied. As part of this step, a designated user from your organization will be provisioned with permissions to handle the configuration between your IdP and Visma Connect.
Key Points
Visma Connect role: Visma Connect serves as a bridge between your Identity Provider (IdP) and Visma Recruit. This allows you to create and manage your SSO application and customize the login flow.
Designation of responsible user: To ensure a smooth process, the user responsible for the configuration should ideally belong to your IT department and have administrator access to your IdP.
Recruit User Setup: The designated user must also be registered as a user in Visma Recruit via your HR/Personnel team.
Action Plan (Client-Side)
Inform Visma of the name and email address of the designated user who will configure the IdP.
Ensure the designated user is registered in Visma Recruit as a user.
Resources
Note: The "Coming soon" note in the generic SAML article only refers to additional documentation—it does not affect the ability to configure SAML 2.0 or OpenID Connect (OIDC).
Step 2: Provisioning User Access to Visma Connect
Once you inform us of the designated user's email address, we will proceed to provision the user in Visma Connect. This enables the user to access the Authentication Settings portal and begin SSO configuration.
Action Plan (Visma-Side)
Visma will activate the Visma Connect module on your account, provision the responsible user and inform the client.
Post-Provisioning
The designated user will now have access to the Visma Connect Authentication Settings Portal, which can be accessed via:
https://authenticationsettings.connect.visma.com/
Action plan (Client-Side)
Enter your email address and press "Next"
Press "Forgot your password?" and follow the instructions
Once you’ve logged in, you can begin setting up your configuration. Let us know once the setup is complete so additional users can be provisioned.
Resources:
Note: The "Coming soon" text in the generic IdP SSO article only refers to the documentation. You can still configure SAML 2.0 or OIDC using Visma Connect.
Additional information
Once you have completed the configuration, you can further customize your tenant's MyDomain URL in Authentication Settings and define elements like login policies and post-login redirection behavior.
"Policies"-tab: Disable Visma IdP (username/password login method) and direct all users to your own IdP for authentication
"Single Sign-On"-tab: Redirect users automatically to Visma Recruit after loggin in, instead of Visma Home
Step 3: Finalizing Configuration and Provisioning the user base
Post-Configuration Verification
Once you have configured your IdP in the Visma Connect Authentication Settings portal, we can proceed to provision all other organization users from Visma Recruit. This process maps each user within your organisation's Recruit-account to a user in Visma Connect. This process is automated, and the sync between Recruit and Connect only needs to be configured/enabled once by Visma.
Action Plan (Visma-Side)
Visma provisions the client's Recruit-users to Visma Connect
Visma informs the client when the provisioning is completed
Once the above steps are complete, SSO is fully operational for your organization via Visma Connect. Users can securely and seamlessly access Visma Recruit using their IdP credentials.
Resources:
Your MyDomain URL: https://example.my.connect.visma.com/
Note: "Example" is replaced with the MyDomain that was defined in Authentication Settings
Additional Resources
If you have any further questions or need assistance, don’t hesitate to contact us.