Secure Access (ESA) 2025.1 Release Notes
Secure Access (ESA) 2025.1 Release Notes
Secure Access (ESA) is an authentication and access component for the Matrix 42 core, pro, IGA platform.
Discover the new features, enhancements and bug fixes included in the Secure Access 2025.1 release, providing users with improved functionality and security for their authentication and access management needs.
Executive summary
The 2025.1 version added support for Signicat SMS OTP with Entra users, and Passwordless authentication with Keycloak via Signicat.
Passwordless authentication
"Passwordless authentication with Keycloak via Signicat" allows users to authenticate with one-time password, which is sent to their mobile phone(sms) or email which is stored in ESM.
Below screenshot is from this functionality configuration page, where admin adds EFECTE Passwordless Login Form -step to Efecte Login:

These following pictures show how it looks for end users, when using SMS or email to deliver one-time-password and login with using that.
User can login using “Forgot Password?” button:

after user clicks Forgot Password user is asked to enter username or email:

after submitting use is asked to enter verification code which was sent to their phone via SMS or via email (phone number and email address are read automatically from ESM based on username/email address given by user):

When user clicks Continue, they are logged in.
ESA support Signicat SMS OTP with Entra users
After user has authenticated against Entra ID, users mobile phone attribute can be fetched either from Azure claims or from ESM, and then use that information to do mobile authentication using Signicat.
Two new login flows related to this are:
New login flow after Entra ID (Azure) login - it will copy the user's mobile phone attribute from the Azure claim to it's model representation in Keycloak, and then use Signicat authentication and pass that attribute to mobile authentication.
New login flow after Entra ID (Azure) login - it will copy the user's mobile phone attribute from ESM to it's model representation in Keycloak, and then use Signicat authentication and pass that attribute to mobile authentication.
Efecte Secure Access 2025.1 release notes
Features and improvements
| Change ID | Description | Notes |
|---|---|---|
| IGA-7422 | ESA to support Signicat SMS OTP with Entra users |
https://docs.efecte.com/en_US/configure-authentication and https://docs.efecte.com/en_US/customer-instructions
|
| IGA-7510 | ESA Passwordless authentication with Keycloak via Signicat |
https://docs.efecte.com/en_US/configure-authentication and https://docs.efecte.com/en_US/customer-instructions
|
| IGA-7657 | ESA certificate refresher was creating too many log files | |
| IGA-7965 | ESA Signicat suomi.fi logout |
https://docs.efecte.com/en_US/customer-instructions
|
Bugs
| Change ID | Description | Notes |
|---|---|---|
| IGA-6551 | Fix realm import using ‘realm.json’ | Fixed |
| IGA-7468 | messages_fi.properties is not copied/preserved to efecte login theme | Fixed |
| IGA-7757 | partner.admin user does not have needed access to ESA | Fixed, related to CP-8315 |
| IGA-7846 | Custom English localisation for tab names do not change | Fixed |
Need help?
Do you need help, or you have suggestions or change proposals?
Please contact the Matrix42 Service Desk (servicedesk@efecte.com) if you have any questions or change proposal regarding the latests release.
Table of Contents