Function

Authentication

Single sign-on, SAML, OpenID Connect and two-factor authentication on top of the regular login.

Standard login

Every instance ships with a password login with roles, rights and a simple two-factor toggle per instance. This is base, active in every go~mus instance.

Single sign-on

With the authentication add-on, you can connect SAML and OpenID Connect, for example Microsoft Entra (formerly Azure AD) or Google Workspace. Users sign in with the organisation's identity system, without a separate go~mus password.

Provisioning

Users can be created automatically on first sign-in. Role and museum assignment can be derived from group attributes of the identity system, so onboarding and off-boarding live centrally in the identity provider.

Two-factor authentication

Independent of the SSO path, each instance can enforce the simple TOTP-based two-factor authentication. Useful with the standard login when no organisation-wide identity system is in place.

Get to know go~mus

Schedule a personal presentation. We will help you integrate go~mus into your workflow and support you in connecting your existing infrastructure.

Get in touch