What options are available for Single Sign On (SSO) for Matomo?
Matomo supports several enterprise authentication and Single Sign-On (SSO) options, allowing organisations to authenticate users through existing identity management systems.
SAML Identity Providers (IdPs)
SAML authentication allows users to sign in to Matomo using an external Identity Provider (IdP), such as Azure AD (Microsoft Entra), OneLogin, Okta, Google Workspace, ADFS, Ping Identity, or Salesforce.
Users sign in through their Identity Provider rather than managing separate Matomo credentials. SAML is commonly used for browser-based Single Sign-On, centralised authentication policies, and multi-factor authentication (MFA) enforcement.
LDAP directory services
LDAP authentication integrates Matomo with central directory services. It can be used with LDAP directories, Microsoft Active Directory, Kerberos authentication, and web server authentication.
LDAP is commonly used for centralised directory authentication, synchronised user management, and Active Directory integration.
Ready to enable SSO? Find out how to get SSO with SAML or LDAP in Matomo.