Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

413 total results found

Use cases

Federation Holder group login

Premises 1. An Organizational Unit has been defined as Role holder Yes. 2. Several groups have been defined with type organizational unit with role holder Yes. 3. An attribute sharing policy has been defined. 4. Indicates which Service Providers will...

Soffid
3.6
Federation

Active Directory back channel configuration

Connectors Windows Connector

Introduction Active Directory Back Channel refers to a mechanism that allows Soffid to synchronize user information with an external Active Directory (AD) server in real-time or near real-time (Password synchronizer). This synchronization ensures that both So...

Connectors
Windows
Soffid
3
Password synchronizer

Networks

Soffid 3 reference guide Resources Management

Description Operators can define the subnets that compose the internal network, in order to manage the IP address space. The main goal is to manage a limited resource as the IP address is. Soffid supports both static and dynamic IP assignments. Anyway, stati...

Soffid
3
Resources Management

Add applications

Configuration wizard AM

Description This wizard allows you to add a new Service Provider, that is, to configure an application that relies on an Identity Provider (IdP) to authenticate users and provide access to its services. To be able to add new applications (SP), you must insta...

Soffid
3.4
Configuration wizard
AM
Wizard

Create MFA policies

Configuration wizard AM

Description This wizard will help you to configure multi-factor authentication in order to expand security. This process requires users to provide two or more forms of identification before being granted access to a system or application. For more informatio...

Soffid
3.4
Configuration wizard
AM
Wizard

Create adaptive authentication rules

Configuration wizard AM

Description Adaptive authentication rules are a set of security policies and mechanisms that adjust authentication requirements. These rules determine the strength of authentication required for each user, based on factors such as their location, device, past...

Soffid
3.4
Configuration wizard
AM
Wizard

Authentication

Soffid 3 reference guide Security settings

Definition Soffid could use different kinds of external authentication sources. These mechanisms could be selectively enabled or disabled. Screen overview Standard attributes Global status Soffid server host name Enforce TLS connections t...

Soffid
3
Security settings

Delegation Roles

BPM editor Process types

Description The Delegation Roles Process type is used to allow the users to delegate temporary their own permissions.  That process is defined by default with 3 steps, but you can add new, delete and update steps to customize your business process.  Start...

Soffid
3
Addon
BPM
Addon
Workflow

Permission request

BPM editor Process types

Description The Permission Request Process type is used to define business processes to request permissions. That process is defined by default with 4 steps, but you can add new, delete and update steps to customize your business process.  Start Approve ...

Soffid
3
Addon
BPM
Addon
Workflow

Account reservation

BPM editor Process types

Description The Account Reservation Process type is used to configure the use of privileges accounts. That type of process will be launched when the end-users want to connect to a system using a privileged account through the password vault. Soffid allows yo...

Soffid
3
Addon
BPM
Addon
Workflow

ESSO

Federation Profiles

Definition Here is an explanation about how to configure the ESSO profile by using Soffid as Identity Provider. Please note that the profile parameters will be automatically updated on the PCs. Screen overview Standard attributes Class: class name (...

Soffid
3
Addon
Federation
Profiles
Radius

Condition for Adaptive authentication

Federation

Introduction Adaptive authentication is designed to improve the security of online accounts by adding an additional layer of protection against unauthorized access. When the authentication is being defined, Soffid allows you to add some adaptive authenticati...

Soffid
3
Addon
Federation
Authentication

Synchronization servers

Soffid 3 reference guide Integration Engine

Description Sync server is the engine responsible for connecting Soffid with data sources or managed systems. Soffid allows you to configure different synchronization servers. These synchronization servers are installed and configurated using command line to...

Soffid
3
Integration Engine
Sync Server

CVE-2025-32408

Security Advisories

Title Necessary authorization to use pam service. Affected Product Code Base Soffid Console - 3.6.31 Descripition Recently the Soffid IAM team detected and corrected a low vulnerability that had been detected in the product's Console. This vulnerability r...

Soffid
3
CVE
Security Advisories

Role assignment rules

Soffid 3 reference guide Resources Management

Description Soffid console provides an option that allows you to customize policies to assign or revoke roles automatically to specific users. To assign or revoke roles, the users must comply with the defined requirements. That option allows you to Preview c...

Soffid
3
Resources Management

Password policies

Soffid 3 reference guide Security settings

Definition Password domain Is a logical way of grouping managed systems that are sharing the same password for each account. If the administrator chooses to have the same password for every system, only one password domain should exist. If the administrator ...

Soffid
3
Security settings

Hosts

Soffid 3 reference guide Resources Management

Description The host screen lets the administrator manage a static IP address assigned to any host. Dynamic IP addresses are automatically managed by Soffid ESSO. Screen overview Related objects Network Operating systems Custom attributes Basics ...

Soffid
3
Resources Management

Step 3.1. Launch network discovery

PAM Implementation guide Step 3. Launch network discovery

Then, the third step will be to launch the network discovery process. That is the process in charge to scan the network, getting the hosts information, and connecting to the hosts as well. Step-by-step 1. The discovery network task can be executed manually...

Soffid
3
PAM
PAM Implementation

Identity Provider

Federation Federation members

Description An identity provider (abbreviated IdP or IDP) is a system entity that creates, maintains, and manages identity information for principals and also provides authentication services to relying applications within a federation or distributed networ...

Soffid
3
Addon
Federation

Users

Soffid 3 reference guide Resources Management

Description The user is the core object of the system. In Soffid, a user means an identity (usually a person). Every user can have a number of accounts spread on different information systems. In traditional system management, one can assign roles and permis...

Soffid
3
Resources Management