PingFederate Overview
PingFederate® is the only standalone federated identity management software to deliver secure Internet SSO for all external partner connections while working with your existing identity infrastructure. It gives your organization’s users safe access to Internet applications without the need to login again. Through standards based identity federation, PingFederate eliminates the need for multiple identity credentials in redundant directories, manual user provisioning and time-consuming proprietary SSO implementations that previously burdened organizations tasked with supporting external applications.
PingFederate provides everything you need to get your federated identity connections for secure Internet SSO up and running quickly. Off-the-shelf integration kits and multi-protocol support ensure PingFederate can meet your Internet SSO requirements.
Why do over 260 enterprises and service providers use PingFederate to directly connect their users to external mission-critical applications over the Internet? Because of PingFederate’s extensive identity federation capabilities including:
- Federated Identity System Configuration – from PingFederate’s centralized administration console, administrators can create and manage multiple partner connections that deliver identity provider and service provider initiated SSO, as well as single logout.
- Multi-Protocol Support – support an array of standards including SAML 1.0, SAML 1.1, SAML 2.0 and WS-Federation.
- First-Mile Integration – link to access management, custom applications, authentication systems and portals with out-of-the box integration kits that provide easy, GUI-based setup.
- Last-Mile Integration – configure integration kits to link with access management systems, application servers, portals, Web servers, commercial and custom applications.
- External Data Look-Up – include external data from JDBC, LDAP and other resources with SAML assertions.
- External Connections – build external partner connections for single sign-on in a few easy steps. Through the administration console, simply follow the prompts and screens to configure the connection.
- SaaS Provisioning – completely eliminates manual provisioning of user accounts at SaaS providers such as Salesforce and Google Apps while working with your existing identity infrastructure to replicate account creations, changes and deletions to your SaaS providers' directories.
- Express Provisioning – creates accounts on-the-fly in the SP's directory for users when they first attempt SAML-based SSO into a service provider's application.
- SaaS Connectors – SSO-enables the numerous means your users employ to access their SaaS applications: desktop browsers, mobile device browsers, and even rich client applications such as Outlook email plug-ins with the Quick Connection templates that simplifies connection setup with pre-populated connection settings and provisioning parameters.
- Auto-Connect™ – create automatic trusted connections when users request site access. By simply adding allowed domains to a white list, PingFederate can automatically discover the user’s identity provider from their email address and immediately give them access.
- Certificate Management – import and create security certificates while configuring partner connections and receive automatic notifications when certificates are about to expire.
- Web Services - extend browser-based Internet Single Sign-On architectures to incorporate Web services and Service-Oriented Architectures (SOAs). It acts as a WS-Trust Security Token Service (STS), creating and validating security tokens that get bound into SOAP messages to carry user identity information in a standards-based manner.
- Data Center Readiness and Management – provides self-contained clustering that delivers failover and performance scalability, even for geographically distributed data centers and integrated runtime reporting.
- PingEnable –Ping Identity's family of federated identity implementation services, support services, expert methodologies and training.
PingFederate is available for download. Once you have the software, request your free evaluation license key here.