We currently offer several options for SSO in Matomo:

  1. SAML support for Matomo allows users in any Identity Provider such as OneLogin, Okta, Ping Identity, ADFS, Google, Salesforce, SharePoint, or Azure AD (Microsoft Entra) to log in to Matomo. You can purchase the LoginSaml plugin on the Marketplace or learn more in the user guide.
  2. LDAP support for Matomo allows users in LDAP or Kerberos SSO to log in to Matomo. Also supports web server authentication. Download LoginLdap from the Marketplace.

And if you are integrating with Active Directory in Matomo, we have two methods depending on which kind of Active Directory is in use:

  1. For a local Active Directory setup (Using a domain controller on a corporate or enterprise network) you can use our LoginLdap plugin.
  2. For Azure AD (Microsoft Entra), we recommend configuring your setup to work with SAML and then configure our LoginSAML plugin.