Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

513 total results found

Soffid Authenticator App

Soffid
3
Authenticator

Password Manager Getting started

Password Manager Getting started

Soffid
3.5
Password Manager
PM

Break Glass

Soffid
3.5
Addon
Break glass
Break glass

SQL Connector

Connectors

Soffid
3
Connectors
SQL

Windows Connector

Connectors

Soffid
3
Connectors
Windows
Connectors
Active directory

Zarafa Connector

Connectors

Soffid
3
Connectors
Zarafa

Process types

BPM Editor

Templates definition of process types

Soffid
3
Addon
BPM
Addon
Workflow

SCIM full examples

SCIM

Soffid
3
Addon
SCIM
Examples

Resource data model & schema

SCIM

The data model of the Soffid objects is mapped to JSON objects to enable the data transport between client and server.

Soffid
3
Addon
SCIM

ESSO Manuals

ESSO

Documentation about Windows user access, Linux user access and Admin access

Soffid
3
ESSO

ESSO Configuring Rules for Single Sign On

ESSO

Soffid
3
ESSO
SSO

ESSO Scripting Language

ESSO

Soffid
3
ESSO
Examples

Soffid BPM Editor

BPM Editor

Soffid BPM Editor

Soffid
3
Addon
BPM
Addon
Workflow

User management steps

BPM Editor

Define the user management steps

Soffid
3
Addon
BPM
Addon
Workflow

Permissions management steps

BPM Editor

Define the Process management steps

Soffid
3
Addon
BPM
Addon
Workflow

Account reservation steps

BPM Editor

Define the account reservation steps

Soffid
3
Addon
BPM
Addon
Workflow

Connectors Examples

Connectors

Soffid
3
Connectors
Examples
Examples

Configuration

PAM Deployment

Soffid
3
PAM
Deployment

Examples

BPM Editor

Self service portal examples

Soffid
3
Addon
BPM
Addon
Workflow
Examples

Step 4. Register additional resources (Optional)

PAM Implementation guide

Soffid
3
PAM
PAM Implementation

Step 5. Account management

PAM Implementation guide

The account management step shows you how to manage the accounts to change the type, how to locate the accounts on the password vault and how to assign a password. To comply this step the discovery process must be completed.

Soffid
3
PAM
PAM Implementation

Step 6. Passwords rotation

PAM Implementation guide

The passwords rotation reduces the vulnerability to password-based attacks. Soffid allows you to limit the password lifespan and force you to change it.

Soffid
3
PAM
PAM Implementation

Step 7. Just in time privileges

PAM Implementation guide

Soffid
3
PAM
PAM Implementation

⏰ Getting started

Federation Web SSO

Introduction To configure the Web SSO you must complete the next steps 1. Attribute definition: add the necessary attributes if they are not in the list. 2. Attribute sharing policies: define the proper attribute sharing policies to determine which attrib...

Soffid
3
Addon
Federation

Attribute definition

Federation Web SSO

Description The attribute definition page displays all the auto-generated user attributes. Those attributes will be the attributes to deliver from the identity providers to the service providers depending on the defined rules. Soffid has a default implementa...

Soffid
3
Addon
Federation

Attribute sharing policies

Federation Web SSO

Description After defining the attributes to publish, it’s required to write a policy that defines which attributes will be allowed to share with each service provider. Soffid allows you to define security rules that apply to any attribute that should be del...

Soffid
3
Addon
Federation

Identity & Service providers

Federation Web SSO

Description Soffid Identity Federation addon helps administrators to manage an Identity Federation. With Soffid you can manage the whole federation security configuration, increasing the security while reducing the federation management costs. Soffid can also...

Soffid
3
Addon
Federation

OpenIDProfile

Federation Profiles

Definition The Identity Provider will serve the OpenID-Connect protocol. It is possible to accept the default endpoints or modify them. You can check the server features visiting https://<YOUR-IdP>/.well-known/openid-configuration. That JSON gives you inform...

Soffid
3
Addon
Federation
Profiles
OpenId Connect

SAML1ArtifactResolutionProfile

Federation Profiles

Definition Based on SAML version 1 standard. This profile is used when the Service Provider wants to resolve or check a received assertion. Screen overview Standard attributes Class: class name (readOnly field). Enabled: if it is checked (selected opt...

Soffid
3
Addon
Federation
Profiles
SAML
1

Openid-connect to SAML interoperability

Federation Connecting Service Providers

Introduction OpenID-Connect has a clear design suitable for both frontend and backend. SAML has a clear design for the frontend, but the backend usage is harder as the security in SAML cannot be placed at transport layer. Instead, in must be placed at docume...

Soffid
3
Addon
Federation

validate-domain

Federation Web services reference

Definition This operation allows to validate the user domain and return the IDP ower of the user. URL <console-domain>/webservice/federation/rest/validate-domain Method POST Headers Accept = “application/json” Content-Type = “application/...

Soffid
3
Addon
Federation
WS reference

validate-credentials

Federation Web services reference

Definition This operation allows to validate the credentials of the user against Soffid. URL <console-domain>/webservice/federation/rest/validate-credentials Method POST Headers Accept = “application/json” Content-Type =...

Soffid
3
Addon
Federation
WS reference

expire-session

Federation Web services reference

Definition This operation allows to close a session created by either validate-credentials or parse-saml-response. If you want to get real global logout, this method invocation is not enough. You should also use the generate-saml-logout-request method. ...

Soffid
Addon
Federation
WS reference

generate-saml-request

Federation Web services reference

Definition This operation allows to generate a SAML request to an external IDP. URL <console-domain>/webservice/federation/rest/generate-saml-request Method POST Headers Accept = “application/json” Content-Type = “applic...

Soffid
3
Addon
Federation
WS reference

parse-saml-response

Federation Web services reference

Definition This operation allows to validate a SAML response generated by another external IDP that support SAML protocol. URL <console-domain>/webservice/federation/rest/parse-saml-response Method POST Headers Accept = “appl...

Soffid
3
Addon
Federation
WS reference

generate-saml-logout-request

Federation Web services reference

Definition This operation allows to generate a SAML logout request to be sent to a IdP supporting SAML Global Logout, including Soffid IdP. URL <console-domain>/webservice/federation/rest/generate-saml-logout-request Method ...

Soffid
3
Addon
Federation
WS reference

Server certificate management

Federation

There are two options for certificate management 1. The easiest, fast and cheap one: Do not create any public or private key, nor enter any certificate chain. At first start up, Soffid Identity Provider will generate a new public/private key pair. Using thi...

Soffid
3
Addon
Federation
Certificate

Soffid IdP as an identity broker

Federation Identity Broker

Introduction An Identity Broker is often part of a a Single Sign-On Architecture as an an intermediary service that connects multiple Service Providers with different Identity Provider (IDP)s.​ Soffid IdP can act as an identity broker. This means that So...

Soffid
3
Addon
Federation
Identity broker

External oAuth / OpenID Identity Providers

Federation Identity Broker

Introduction Soffid federation can be composed by a mix of SAML and oAuth / OpenID-connect servers. In such a scenario, Soffid IdP is able to let users be identified by oAuth servers like Linked-in, Google or Facebook, perform all the provision tasks requir...

Soffid
3
Addon
Federation

Customizable CSV file (CSV Connector type)

Connectors CSV Connector

Introduction Description The CSV connector type allows users to load a collection of data stored into a plain CSV file. In the following page, the process to complete the CSV connector setup will be explained. To begin with,  address to the quick start sec...

Soffid
3
Connectors
CSV

Invoker interface

Connectors Shell Connector

Any agent, trigger or mapping can use the invoker method for the ActiveDirectory agent. The invoker method is available in the dispatcherService class as well as the in the serverService. The invoker method is not specific of the Shell agent. Many other conne...

Soffid
3
Connectors
Shell

HOWTO SSL access to Active Directory

Connectors Windows Connector

Table of Contents Introduction. Installing the Certificate Services. Configuring Automatic Certificate Request for Domain Controllers. Check for Issued Certificate. Import certificate. Introduction This howto will show you how to install the Certifi...

Soffid
3
Connectors
Windows

Invoker interface for Active Directory

Connectors Windows Connector

Any agent, trigger or mapping can use the invoker method for the ActiveDirectory agent. The invoker method is available in the dispatcherService class. The invoker method is not specific of the Active Directory agent. Many other connectors support this method...

Soffid
3
Connectors
Windows