Single Sign-On (SSO)
and Password Management

For an Evolve User World

 

 

image

Foundation Features

  • Federated SSO

  • Credential Based SSO

  • SSO to Thick Client Applications

  • Integrated Window Authentication

  • Enterprise Portal Integration

  • Browser Preference for SSO

  • Self-Service Password Change

  • Self-Service Password Reset and Account Unlock

  • Password Synchronization



Federated SSO

Cloud Identity supports SSO to applications that support federated protocol such as SAML, OpenID Connect and OAuth, etc.

Cloud Identity supports both IdP initiated and SP initiated SSO to application.


image


image



Credential Based SSO

Even if an application does not support any type of federated protocol, it can be integrated with Cloud Identity. The application can be integrated as a credentials based application in a matter of clicks. This can either be the Enterprise Directory credentials (where the application authenticates with the Directory Server) or application specific credentials.



SSO to Thick Client Applications

To be able to offer a true enterprise class SSO solution, organizations using Thick Client applications need to address the ability to use SSO to those Thick Client applications, an unserved need in the industry.

Cloud Identity supports SSO to a wide range of thick client applications such as SAP ECC, Outlook, VPN, Putty, etc. using proprietary patented technology thus ensuring users need only one solution to access all their applications.


image


image


Integrated Window Authentication

Cloud Identity supports Integrated Windows Authentication that authenticates users against their Windows credentials so that they get seamless access to Cloud Identity. IWA enables users to access Cloud Identity if they are already logged into their Windows machines without any additional login.

Enterprise Portal Integration

Organization that have an internal portal for employees to access internal resources can also easily integrate Cloud Identity’s SSO to the portal. This helps in improving the adoption of the intranet portal as well as SSO since users do not have to access multiple applications.

image


image


Browser Preference for SSO

Cloud Identity Single Sign-On allows users to associate their preferred browser with any SSO application. With Browser Preference, applications will be launched only in its preferred browser irrespective of the browser it was launched from.



Self- Service Password Change

Cloud Identity allows users to change their password directly from Cloud Identity.

In case authentication is delegated to the Enterprise Directory, changing password in Cloud Identity results in changing the Enterprise Password directly.

image

Self-Service Password Reset and Account Unlock

Cloud Identity allows users to reset their forgotten passwords or unlock their locked accounts without any assistance from Helpdesk, by verifying themselves with alternate factors such as Security Questions, Email OTP, SMS OTP and Soft Token.


image


Password Synchronization

Cloud Identity allow users to sync password with applications that have been onboarded, so that the users just need to remember a single password. Contrary to popular belief, using a single password ensures a much higher degree of security since users can select a strong password and do not need to write it down on a sticky note or diary to remember it.

We support password sync for most commonly used applications and can also support custom homegrown applications.