Using the login services

The login to the university services has two-steps: after authentication, the user accepts the disclosure of their credentials to the system, after which the service can be used.

The single sign-on will be taken into use for university computers that are in the centralised administration in autumn 2018, which will facilitate the work of the university staff and students. After logging in once with your username and password, you no longer need to separately log in with a browser.

For more information, see the bulletin.

Pay attention to information security

  • Check from the address row that you are on the right login page!
    The address must start with: https://login.helsinki.fi/...
osoiterivi.png
  • Remember to always lock your workstation when you leave your computer!
    If the single sign-on is used, anyone can access a great number of university services from your unlocked computer without separately logging in.

Tabs

Detailed help

Logging in to University services

In the future, login will be a two-step login process: after authentication, you accept the disclosure of information about yourself to the system, after which you can use the service.

On the approval page, you can see a list of the information disclosed about yourself to the service. If there are no changes to your information, this approval will only be required when you are first logging in to each service.

  • You can log into the service directly by entering your username and password and clicking LOGIN.
  • If you want see the information which is disclosed about you to the service, enter your username and password, tick the option "Redisplay the page on accepting the disclosure of your information" (1) and click LOGIN. You will be moved to a page on which you can see the information to be disclosed, and you can either accept or reject their disclosure.
Login

 

  • On this page, you can see the information to be disclosed (1). The information to be disclosed depends on the service.
  • If you accept the disclosure of your information, click ACCEPT (2). You will be given the opportunity to move to the service you have selected.
  • If you do not accept the disclosure of your information, click REJECT (2). Note that you will be unable to use the service if you select this option.
accept_reject.png

If you later on want to see what information you have disclosed, on the login page (for instructions, see the first image), tick the option "Redisplay the page on accepting the disclosure of your information". You will be moved back to the page where you can accept/reject to disclose your information (see the second image in the instructions) and where you can see the information you have disclosed.

Single sign-on to services with university computers

These instructions are intended only for computers in the university’s centralised administration.

A single sign-on means that after logging in once with your username and password, you no longer need to separately log in with a browser.

Using the single sign-on service

  • Use the browser to open any university service that uses the university login service (e.g. Flamma). The login page will open (see below).
  • Check the box: “Use single sign-on always with this browser” (1).
  • Click the “Use single sign-on” button (2).
    • Note! The button will only be visible if these requirements are fulfilled. If the alternative is not visible, continue to log in by entering your username and password.
    • If you want see the information which is disclosed about you to the service, you can check the option “Redisplay the page on the acceptance of the disclosure of your information”.
kertakirjautuminen1-en.png

After this, when you open the following service (e.g. Flamma Workgroups or SAP HR), you can automatically log in to it if the service is included in the single sign-on service.

You can administer/remove the settings later here.

  • This setting is browser-specific and will be stored in a cookie.
asetukset-en.png

  Conditions for using the single sign-on service

  • Works only on the university computers (Windows, Mac, Cubbli, vdi  in the internal network (university network, VPN and eduroam).
  • Supported browsers: IE, Edge, Firefox, Chrome and Safari
  • Browser settings for these browsers are made centrally for the university computers. If you encounter problems, see section Problem solving.

Problem solving

Please note that if you bring your own computer to the university (e.g. in the eduroam network), the Use single sign-on button will be displayed on the screen, but it does not work. Since your computer is not under the university’s centralised administration, its login details are not the same as on the university’s computers.

Helpdesk supports you only if:

  1. you are using a university computer under centralised administration
  2. you are in the university network (including VPN and eduroam)
  3. you are using a supported browser

 

Browser settings for supported browsers

Browser settings for these browsers are made centrally for the university computers, but sometimes you may need to adjust them. You can find instructions for adjusting them below.
Microsoft Edge and Internet Explorer
Specify the login service as an intranet page in Internet Explorer (IE) as follows:

  • Open Internet Options
  • Select the Security tab and Local intranet
  • Click Sites, select Advanced and add https://login.helsinki.fi as a realiable service
  • Close Sites and other windows
  • Restart the browser

IE may show the login page incorrectly. Select then Settings > Compatibility View settings and remove the check from the checkbox Display intranet sites in Compatibility View.

Chrome
Windows:

  • Chrome will function when the IE’s settings are adjusted correctly.

Linux:

  • Start Chrome with the command: “chrome --auth-server-whitelist='https://login.helsinki.fi”

Firefox

  • Enter the following address on the browser row: about:config
  • Firefox will warn you that changing the settings may endanger the functioning of the browser. Please note that you make the changes at your own risk. Be careful and only make the change that is advised here.  Ignore the warning by clicking “I accept the risk!”
  • Search for the setting by entering the following on the search row: network.negotiate-auth.trusted-uris
  • Enter value https://login.helsinki.fi
    • There may be an already set default ad.helsinki.fi, in which case, you can enter them both by specifying the value as: ad.helsinki.fi, https://login.helsinki.fi
      firefox-asetukset.png

 

Ending use

  • It is not possible to end the use of the single sign-on alternative on the university computers under the centralised administration, but you can disable single sign-on by removing the check from the checkbox here. This must be done separately for each browser.
  • Another alternative is to clear the browser’s cache