Listing Thumbnail

    OneLogin Workforce Identity

     Info
    Free Trial
    Elevate organizational security with strong and adaptive authentication, preventing unauthorized access to your most critical systems, applications and sensitive data.

    Overview

    Play video

    OneLogin by One Identity is a modern, cloud-based access management solution that seamlessly manages all digital identities for your workforce, customers and partners. OneLogin provides secure single sign-on (SSO), multi-factor authentication (MFA) with support for a wide array of passwordless authentication factors, adaptive authentication, desktop-level MFA, directory integration with AD, LDAP, G Suite and other external directories, identity lifecycle management and much more.

    OneLogin uses powerful authentication and role-based user provisioning engine enabling you to implement least-privileged access controls and eliminate manual user management workflows. Moreover, OneLogin delivers multi-layer, context aware and risk-based protection, minimizing the most common attacks and resulting in increased security, frictionless user experiences, and compliance with regulatory requirements.

    OneLogin has pre-built authentication connectors with thousands of third-party web applications with extensibility across your entire portfolio. With OneLogin, you can:

    -Implement single sign-on (SSO) for users across mobile, web and desktop

    -Enforce contextual multi-factor authentication (MFA) and access security policies, and automate user account provisioning

    -Provision users with granular access permissions into the AWS Console/CLI or directly to AWS services

    -Extend security controls across your cloud infrastructure by leveraging pre-built integrations with Amazon Control Tower, AWS IAM, AWS SSO, Amazon Cognito, and Amazon EventBridge

    If interested in private offers, email us at partnercircle@oneidentity.com .

    Highlights

    • SSO: Automatically sync users across multiple directories in minutes to enable one-click access to all corporate applications, whether on-prem or in the cloud, and enforce strong security policies, plus self-service password reset.
    • MULTI-FACTOR AUTHENTICATION (MFA): Supports many authentication methods, including passwordless, passkeys, one-time passcodes, push notifications, biometric data, security keys and more. With real-time reporting and monitoring capabilities, gain insights into authentication events, enabling proactive detection and response to potential security incidents.
    • ADVANCED DIRECTORY: Acts as your secure directory in the cloud with an intuitive web-based interface that allows you to manage users, their manager relationship, authentication policies and access controls.

    Details

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Free trial

    Try this product free according to the free trial terms set by the vendor.

    OneLogin Workforce Identity

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (4)

     Info
    Dimension
    Description
    Cost/12 months
    OneLogin 1-App Plan
    Standard User License, OneLogin 1-App Plan for AWS
    $12.00
    OneLogin Advanced Plan
    Standard User License, OneLogin Advanced Plan
    $48.00
    OneLogin Professional Plan
    Standard User License, OneLogin Professional Plan
    $96.00
    Custom
    Private offers available - email partners@onelogin.com
    $96.00

    Vendor refund policy

    Please refer to OneLogin terms of service https://www.onelogin.com/terms 

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    To learn more about OneLogin Customer Support, visit

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly
    By JumpCloud, Inc.

    Accolades

     Info
    Top
    100
    In Applications
    Top
    10
    In Application Servers
    Top
    100
    In Security

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    1 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Single Sign-On (SSO)
    Supports automatic user synchronization across multiple directories with one-click access to corporate applications across on-premises and cloud environments
    Multi-Factor Authentication
    Provides diverse authentication methods including passwordless, passkeys, one-time passcodes, push notifications, biometric data, and security keys with real-time reporting capabilities
    Identity Lifecycle Management
    Enables role-based user provisioning with least-privileged access controls and automated user management workflows
    Cloud Directory Services
    Offers secure cloud-based directory management with web interface for managing users, authentication policies, and access controls
    Security Integration
    Supports pre-built authentication connectors with third-party web applications and integrations with cloud infrastructure platforms like AWS IAM, AWS SSO, Amazon Cognito, and Amazon EventBridge
    Identity Management
    Centralized cloud directory platform supporting cross-platform identity management across multiple operating systems and infrastructure resources
    Single Sign-On
    Passwordless authentication with multi-factor authentication supporting over 900 pre-built applications and integration with major identity providers
    Device Management
    Cross-OS server and device management capabilities for Windows, macOS, iOS, Linux, AWS Linux AMIs, and Android platforms
    Access Control
    Group-based permissions and conditional access controls for securing resource access across different infrastructure environments
    Platform Integration
    Native integrations with AWS Identity Center, Google Workspace, Microsoft 365, Active Directory, and HRIS platforms for comprehensive identity ecosystem management
    Multi-Factor Authentication
    Comprehensive, context and risk-aware authentication methods supporting passwordless user experiences
    Single Sign-On
    One-click secure access mechanism for applications and resources across cloud and on-premises environments
    Identity Lifecycle Management
    Automated workflow orchestration for identity management, access reviews, and compliance requirements
    Web Session Protection
    Advanced monitoring and visibility into user actions within web applications beyond initial login
    Identity Directory
    Scalable cloud-based directory for unified user management across enterprise environments, reducing identity fragmentation

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    5
    1 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    100%
    0%
    0%
    0%
    0%
    1 AWS reviews
    |
    7 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    Justin Dow

    Efficient user onboarding with single sign on but needs stability improvements

    Reviewed on Sep 25, 2024
    Review provided by PeerSpot

    What is our primary use case?

    We use OneLogin by One Identity  to provide SAML authentication and single sign-on for all of our SaaS apps.

    How has it helped my organization?

    OneLogin by One Identity  helps us onboard new users really quickly and get everything up to speed super fast. It has helped free up about half of our time through its automation features.

    What is most valuable?

    The directory integration and SCIM provisioning are probably the best features compared to competitors. These are the two things I have found to be most valuable.

    What needs improvement?

    There have been some outages over the years. The uptime has not been great recently, with some outages lasting six, seven, or eight hours. Improvement in the stability of the infrastructure would be beneficial.

    For how long have I used the solution?

    I have been using OneLogin by One Identity for about three and a half years.

    What do I think about the stability of the solution?

    The stability has been an issue, with some outages lasting several hours, which impacts our work.

    What do I think about the scalability of the solution?

    It's pretty scalable. We know it can handle up to maybe two hundred thousand users, and there's no limit on the number of applications we can integrate. Overall, it is very scalable.

    How are customer service and support?

    The quality of support is okay. It's not great, but it's not worse than other companies.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    In other jobs, I've used Okta and Auth0 .

    How was the initial setup?

    The initial set up was probably easy since the company was using it before I started working here.

    What other advice do I have?

    I'd rate the solution seven out of ten.

    Which deployment model are you using for this solution?

    Public Cloud
    Meraj Q.

    One identity for IAM is one of few tools which is leader in market

    Reviewed on Mar 14, 2024
    Review provided by G2
    What do you like best about the product?
    Easy to use, all access related to identity in 1 place in a tree like structure, can manage all application access from 1 page
    What do you dislike about the product?
    The Graphical user interface can be more user friendly, currently it's a little complicated for beginners but as and how you use it, one will get used to it
    What problems is the product solving and how is that benefiting you?
    Managing access for users on different applications, SOD management, managing roles entitlements, account creation, movers, leavers.
    All of the above activities can be automated using One identity,
    It not just saves time and manual efforts but also decreases chances of human error
    Maria-Lopez

    Provides a unified platform, improves efficiency, and saves us time

    Reviewed on Feb 12, 2024
    Review provided by PeerSpot

    What is our primary use case?

    We use OneLogin  to log in to all our different systems. This means I only need to go to the OneLogin  portal to access all my frequently used applications, like our CRM , Greenhouse  for recruiting, Jira  for ticketing, Workday  for HR, Tableau  for data visualization, and even Slack . It's a one-stop shop for everything I need!

    How has it helped my organization?

    The main benefit of OneLogin is its centralized design, offering easy access to everything in one place.

    All of our employees use OneLogin daily to log into their applications.

    OneLogin offers a centralized platform for managing access across our entire organization, which is crucial for cybersecurity. It provides robust security features that give me peace of mind, knowing that data transfers are highly secure and unauthorized access to our databases is extremely unlikely.

    The single pane of glass enables collaborative work between holistic IT and security.

    OneLogin has helped our IT team significantly improve their efficiency by creating a centralized platform. This eliminates the need to access information from multiple portals, saving over 50 percent of their time.

    OneLogin has improved the user experience when working remotely.

    OneLogin has helped increase productivity.  

    What is most valuable?

    OneLogin is efficient. The fact that I'm able to just have one go-to place where I can access everything in one area, so that's convenient.

    What needs improvement?

    I'd like it to have a customization section that displays the company's offerings, categorized by different topics. Ideally, there would be a user-friendly feature at the top allowing individuals to pick and choose the topics they're interested in, essentially creating a personalized experience.

    For how long have I used the solution?

    I have been using OneLogin by One Identity for over four years.

    What do I think about the stability of the solution?

    OneLogin has been stable.

    What do I think about the scalability of the solution?

    The scalability is good, and we're currently migrating our customer relationship management system from Salesforce  to different software. Fortunately, OneLogin hasn't been involved in any data transfer, so I don't anticipate any hiccups or obstacles in that regard.

    What other advice do I have?

    I rate OneLogin a ten out of ten.

    OneLogin does not require maintenance.

    With a good IT team, OneLogin works smoothly and it is self-explanatory. 

    Which deployment model are you using for this solution?

    Private Cloud
    reviewer2339421

    Integrated well and had a single pane of glass, but downtime and pricing were issues for us

    Reviewed on Jan 31, 2024
    Review provided by PeerSpot

    What is our primary use case?

    We used single sign-on, multifactor authentication, lifecycle management, and connectors.

    How has it helped my organization?

    When we rolled it out, adoption was very quick. We migrated our email and other things to OneLogin, so adoption was very quick. The gateway became OneLogin, so if you wanted to get your email or anything else, you had to go through OneLogin to get it. It was quick and easy once we turned things on. Even the engineer who assisted us was very helpful. Once we turned it on, the users seamlessly started using OneLogin. They were redirected every time from others, and that ensured that there were no loopholes in what we were implementing.

    We had a single pane of glass for access management across the organization, but the caveat is that for managing users provisioning and deprovisioning, apps have to support that feature. This single pane of glass was very important because we eliminated ghost accounts that were not being used. We had no idea about them. After implementing OneLogin, when a user left, the deletion used to happen everywhere, so the licensing cost and all those things came down. Audit logs came in one place, so we had all the control. That improved our visibility a lot.

    The single pane of glass for access management enabled collaborative work between IT and Security. It simplified a lot of information for Security, and for IT, it simplified their setup process. For example, they would set up automatic provisions for emails, security training, etc. They would then just set up the user on OneLogin, and automatic provisioning would be done for them. When a user left, the user was removed automatically. That cleaned up things for us and improved processes.

    OneLogin 100% helped to free up time for our IT team. The main work we did was setting up automatic provisioning. We reduced our time from five to ten minutes in creating a user to doing it in an instance. For example, creating a user and assigning it on OneLogin to a department, such as IT, automatically moved them to groups and email groups on Gmail. That was no longer manual. They were just writing out the information that was given, and in the backend, it got mapped correctly to what was needed. That saved time for us.

    OneLogin enabled us to securely manage a growing user base or more applications with a smaller IT staff. After implementing OneLogin, we just had to work on one main platform. We did not fully need administrators for other systems.

    We worked in a hybrid environment. Because OneLogin was available everywhere, it improved the user experience when working remotely. It was a secure way to get to applications. They went through the OneLogin system to get to their apps. However, when everything is under a single pane of glass, there is a risk. If one user gets breached, we have a problem there. For example, I am an administrator, and my account can be breached. The mitigation would be setting up MFA. We needed to put such checks and balances.

    What is most valuable?

    The single sign-on and the fact that we can integrate everything in one place and control from there were valuable features of this solution. The single sign-on worked very well. Lifecycle management was a big feature for us because we just had to provision in one place for the supported apps and everything else that we needed. It worked well in our case.

    What needs improvement?

    One issue was related to the downtime. They have downtime twice a year or once in six months. During the downtime, the SSO page did not come up. When users wanted to get to their email, they were redirected to the OneLogin page, but the page did not come up, and MFA and logins failed. It completely crippled us. In those moments, people did not want to hear about a single pane of glass. We did try to solve it, but it caused issues. Their uptime is 97% or 98%, but most companies prefer 99.9% uptime.

    For how long have I used the solution?

    We have had it for about a year.

    What do I think about the stability of the solution?

    It is very good when it is up. When it was down, they would give us notice, but sometimes, the platforms would not open, and sometimes the connections would not complete. When we clicked on a connector, it sometimes took a lot of time to get through to the network. Those issues were there.

    What do I think about the scalability of the solution?

    We started with 500 users and went to 1,500 users with no changes needed. It worked out well in that sense. Our organization has only 1,500 people. It is not too big.

    How are customer service and support?

    When we were deploying, we had a dedicated engineer, and I used to talk to that person directly. That was very helpful. Once we moved to ticketing, the support was a bit slower. When we had issues, we created a ticket, and there was a lot of back and forth. The times when there was no availability or there was downtime were not acceptable. Those are the main issues for us.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    We were not using any other solution.

    How was the initial setup?

    In terms of the deployment model, it is not on-premises, but it connects to Active Directory. In our use case, we did not have Active Directory. Our setup was fully on the cloud. They connected it to our core systems. Our HRMS system and our email system were the main systems we wanted to connect OneLogin with.

    The initial setup was very easy. With API keys, we could add the users with one click from the Gmail system. It was very simple for us to get that going. 

    It took us a couple of weeks. OneLogin is good if there is a connector, but we did not get enough connectors from them. For example, we did not have a connector for our ERP. When we did not have a connector, we ended up building it because we were a software company. That delayed things for us.

    What about the implementation team?

    We used OneLogin's implementation services. We had one person for its implementation.

    In terms of maintenance, once we set it up, it was good to go. 

    What's my experience with pricing, setup cost, and licensing?

    It was cheap in the beginning, and then it became very expensive. We were initially charged $2 per user per month, which was fine, but by the second year, they increased it to $5 per user. That became very expensive for us because we had about 1,500 users. At $2 per user, it comes out to be $3,000 a month, which is $36,000 a year. If we move to $5 per user, it comes out to be $7,500 a month. That made its cost so high. That is why we removed the product because the cost was high. Also, it was communicated to them. We did not expect a jump of over 100%. That became an issue, and then we had to go through a lot of negotiations, but in the end, it was not feasible for us.

    Which other solutions did I evaluate?

    We tested Okta and JumpCloud. We found OneLogin to be the best because of pricing as well. 

    In terms of features, OneLogin was pretty much the same as Okta. Okta was the leading one that we were looking at. One thing that we wanted in OneLogin, but it was there in JumpCloud, was device access. We wanted device access. We wanted to be able to log into machines through OneLogin.

    What other advice do I have?

    To those evaluating this solution, I would advise making sure that what they need out of the box is there. For example, our ERP's connector was not there, so we lost a lot of time trying to get that done. We had to go back and forth with them.

    OneLogin has a feature called mapping. If mappings go wrong, the application can destroy a lot of things. For example, if you have a mapping that allows you to delete users automatically, and you make any change to that, it can go and delete. It can delete users in the live environment, such as Gmail. Because it is automated, it automatically starts removing users. It happened to us because there was no test environment. We did get one, but such things caused a lot of issues.

    Overall, I would rate OneLogin a seven out of ten.

    Which deployment model are you using for this solution?

    Public Cloud
    Ben Ruset

    Streamlines access management with top-notch support, and a user-friendly interface, making it a highly effective solution for businesses of all sizes

    Reviewed on Jan 19, 2024
    Review from a verified AWS customer

    What is our primary use case?

    We use it to deliver single sign-on services for both our company employees and our customers.

    How has it helped my organization?

    The main advantage is its ease of use for everyday users. Additionally, it simplifies user access management by offering a centralized platform for overseeing user accounts and third-party applications, which greatly benefits my team.

    The adoption rate of OneLogin within our organization is at 100% since it's mandatory for everyone to use. During the rollout phase, there was unanimous approval and no resistance from any team members.

    It serves as a vital tool for access management across our organization by offering a centralized platform. While we don't directly manage user accounts within OneLogin, they are synced from our Active Directory. Therefore, OneLogin primarily functions as a single interface for administering applications that utilize it for authentication.

    OneLogin has been instrumental in freeing up time for our IT team to focus on other tasks. Previously, when onboarding a new user, we had to manually create accounts in multiple applications. However, with OneLogin, we create the account in our Active Directory, which automatically syncs to OneLogin and creates accounts in other applications. Similarly, when offboarding a user, we disable the account in OneLogin, and access to all other resources is automatically revoked. This streamlined process has significantly reduced the time required to manage user accounts. Previously, manual account creation across various platforms would take at least half an hour, whereas now it's down to just five or ten minutes.

    It has empowered us to effectively manage an expanding user base and an increasing number of applications, all with a smaller IT team.

    The implementation of OneLogin didn't significantly impact our user experience while working remotely. We adopted OneLogin during the transition to a remote work environment at the onset of the pandemic.

    It contributed to cost savings for our organization by streamlining time-sensitive processes and boosting productivity, particularly for our IT staff. While we may not have a precise quantification in terms of monetary value, the time saved allows our team to focus on other tasks. As a relatively small organization, we don't require a dedicated Identity Manager, and OneLogin effectively serves our needs in this regard.

    What is most valuable?

    During my evaluation of various products, one standout feature of OneLogin that impressed me was their mobile app for authentication through push notifications. Unlike traditional methods involving rotating codes, the OneLogin app simplifies the process by sending a push notification asking if the login attempt is legitimate. If confirmed, the login proceeds seamlessly.
    The primary benefit is its user-friendly interface, making it particularly accessible for non-technical users.

    One aspect I particularly appreciate is their exceptional customer support whenever I've needed assistance. Their sales team has also been highly responsive and helpful in connecting me with necessary resources, although we haven't faced any major challenges.

    What needs improvement?

    There was a minor outage a few months ago that caused some inconvenience. OneLogin offers a Virtual LDAP feature that we utilize, although it differs slightly from traditional LDAP servers. While it hasn't caused significant issues, improvements in its functionality would likely lead to wider implementation within our organization.

    For how long have I used the solution?

    We have been working with it for three years.

    What do I think about the stability of the solution?

    In terms of stability, there was a downtime incident that impacted all of OneLogin's customers a few months ago, which was frustrating as it occurred during prime business hours and lasted for a couple of hours. Fortunately, the impact on us wasn't severe because our applications are configured in a way that once users sign in and authenticate through OneLogin, they typically don't need to go through OneLogin on a daily basis to access those apps again. As a result, many of our users may not have even noticed the downtime.

    What do I think about the scalability of the solution?

    OneLogin has the capability to scale infinitely, although our organization's needs are quite basic. We haven't been utilizing a vast array of features or configuring hundreds of applications with it. Therefore, I don't anticipate encountering any limitations with the services that OneLogin can provide us.

    How are customer service and support?

    I've found that when I open a support case, I typically receive a response within a few hours, and the support team has consistently provided prompt assistance. Even when investigating issues like examining internal logs for failures, they've been able to help me swiftly. I would rate it ten out of ten.

    How would you rate customer service and support?

    Positive

    How was the initial setup?

    The initial setup process is quite straightforward. Any issues I encountered were promptly resolved with the help of the support team.

    What about the implementation team?

    I managed the deployment independently and had it operational within a day or two, although some configuration and feature familiarization took about a month from starting the trial to getting the quote approved for purchase. In terms of maintenance, whenever an application changes or a new one is added, we configure it within OneLogin. So far, we haven't experienced any issues such as applications failing or directory syncing problems due to configuration changes.

    What's my experience with pricing, setup cost, and licensing?

    While I wish OneLogin's pricing was more affordable, their licensing model, which is based on per user, is acceptable. We renew it annually.

    Which other solutions did I evaluate?

    Before deciding on OneLogin, I evaluated JumpCloud and Okta. However, I found that the features in JumpCloud weren't as developed as those in OneLogin. Additionally, my experience with Okta's sales team was less than satisfactory in terms of configuring a trial and support. In contrast, the sales representatives at OneLogin were highly proactive and went above and beyond to assist us and earn our business.

    What other advice do I have?

    For new users, I would recommend having someone knowledgeable about their internal directory and authentication systems. It's crucial to ensure that their systems are well-maintained and free from technical debt or complexity. The effectiveness of their OneLogin implementation will ultimately depend on the quality of their internal directory setup. Overall, I would rate it ten out of ten.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    View all reviews