ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    What do you use as an identity provider?

    IT Discussion
    8
    26
    1.3k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DashrenderD
      Dashrender @scottalanmiller
      last edited by

      @scottalanmiller said in What do you use as an identity provider?:

      @Dashrender said in What do you use as an identity provider?:

      The local hospitals all use Citrix web portals (formally nfuse - not sure new name, hell might still be called nfuse) the back end of that definitely ties to those hospital's AD - why don't they have account lockout issues?

      web portal. Probably doing the exact thing that RDS Gateway does. If it is like most Citrix products, it IS RDS Gateway, just rebranded.

      I thought from our conversation that this protected against locked accounts by the use of certificates, not username/passwords... in my cases, it's always username/password. Everything is SSO, even if you have to supply that username/password multiple times.

      1 Reply Last reply Reply Quote 0
      • JaredBuschJ
        JaredBusch @nadnerB
        last edited by JaredBusch

        @nadnerB said in What do you use as an identity provider?:

        @VoIP_n00b said in What do you use as an identity provider?:

        JumpCloud’s SSO goes beyond application access to provide a single identity that can access any IT resource, from applications to devices, networks and more. Backed by a robust Directory Platform, you can onboard, offboard, and manage the lifecycle of every user with a single set of credentials. With one identity per user, you can easily provision and deprovision user access to devices (MacOS, Windows, and Linux), on-premise applications, networks and VPN, and servers from a single, secure console.

        https://jumpcloud.com/platform/single-sign-on

        There is so much marketing fluff speak in that.
        Did you just copy and paste from the propaganda page?

        Of course he did, that is all he ever does.

        1 Reply Last reply Reply Quote 1
        • 1
          1337 @scottalanmiller
          last edited by 1337

          @scottalanmiller said in What do you use as an identity provider?:

          @Pete-S said in What do you use as an identity provider?:

          You mean if you paid for M365 then you're already using Azure AD as your identity provider in which case JumpCloud serves no purpose?

          For one thing, Azure AD is lacking connectors for normal things like Linux desktops. Doesn't even WORK in our environment or most of our customers, almost none. At most it works for SOME workloads.

          There is another factor as well, which favors an independent identity provider and authentication. When you have everything in one place, you give too much power over your business to a single company. If you have a problem with Microsoft (or Google) all other services will be useless if you tied everything to Azure AD (or Google Identity Services).

          Also changing "Office" apps from Microsoft to Google or to Zoho or whatever you might fancy will have far reaching implications. So less freedom to pick whatever is best for your company.

          scottalanmillerS 1 Reply Last reply Reply Quote 1
          • dafyreD
            dafyre
            last edited by

            We use WSO2's Identity Server here. It's... not terrible, but can be a real PITA to get config file settings and web page customizations to stick across upgrades sometimes. It's not too bad to configure after you get past that bit.

            Works great with AD.

            https://wso2.com/identity-and-access-management/install/download/?type=docker&msclkid=0c38cb5eb66c11ecb17747fc16fc0f22

            Link above takes you to various setup types, not just docker.

            1 1 Reply Last reply Reply Quote 0
            • 1
              1337 @dafyre
              last edited by

              @dafyre said in What do you use as an identity provider?:

              We use WSO2's Identity Server here

              It seems popular and so does Redhat's Keycloak.

              I thought you had to have paid support to get patches and that it's cost prohibitive for small companies ($20K/year).

              1 Reply Last reply Reply Quote 0
              • scottalanmillerS
                scottalanmiller @1337
                last edited by

                @Pete-S said in What do you use as an identity provider?:

                @scottalanmiller said in What do you use as an identity provider?:

                @Pete-S said in What do you use as an identity provider?:

                You mean if you paid for M365 then you're already using Azure AD as your identity provider in which case JumpCloud serves no purpose?

                For one thing, Azure AD is lacking connectors for normal things like Linux desktops. Doesn't even WORK in our environment or most of our customers, almost none. At most it works for SOME workloads.

                There is another factor as well, which favors an independent identity provider and authentication. When you have everything in one place, you give too much power over your business to a single company. If you have a problem with Microsoft (or Google) all other services will be useless if you tied everything to Azure AD (or Google Identity Services).

                Also changing "Office" apps from Microsoft to Google or to Zoho or whatever you might fancy will have far reaching implications. So less freedom to pick whatever is best for your company.

                Excellent points.

                1 Reply Last reply Reply Quote 0
                • 1
                • 2
                • 2 / 2
                • First post
                  Last post