No-Code SAML Support with Stormpath

16
Stormpath Webinar: No-Code SAML Support for SaaS Applications

Transcript of No-Code SAML Support with Stormpath

Page 1: No-Code SAML Support with Stormpath

Stormpath Webinar:No-Code SAML Support for SaaS Applications

Page 2: No-Code SAML Support with Stormpath

Welcome! • Agenda• Stormpath 101 (5 minutes)• SAML Support (25 minutes)• Technical Q&A (30 minutes)

• Claire HunsakerVP of Marketing & Customer

Success

• Tom AbbotLead Product Manager

Page 3: No-Code SAML Support with Stormpath

Speed to Market & Cost Reduction• Complete Identity solution out-of-the-box• Security best practices and updates by default• Clean & elegant API/SDKs• Little to code, no maintenance

Page 4: No-Code SAML Support with Stormpath

Stormpath User Management

User Data

User Workflows Google ID

Your Applications

Application SDK

Application SDK

Application SDK

ID Integrations

Facebook

Active Directory

SAML

Page 5: No-Code SAML Support with Stormpath

What Is SAML? • Security Assertion Markup Language• Widely-adopted standard for

authentication and authorization• Used by SaaS applications to integrate

with enterprise SSO solutions

Page 6: No-Code SAML Support with Stormpath

SAML Terminology• Identity Provider (IdP) = Enterprise

Identity-as-a-Service provider (Okta, OneLogin, Salesforce)

• Service Provider = your application (and Stormpath as an element of your application)

• User agent = the end-user of the application

Page 7: No-Code SAML Support with Stormpath

Enterprise Login with SAML• Quick and easy SAML support for your

applications

• Allow your customers to log in with their SSO system of choice

• Support multiple IdPs per customer organization

• Configuration-based attribute mapping

Page 8: No-Code SAML Support with Stormpath

Stormpath SAML Flow

Page 9: No-Code SAML Support with Stormpath

Multi-Tenancy across Organizations and Identity

Providers

User Store

Application Logic

Single Instance of Your SaaS Application

Single, shared stack of software

Organization 1

Using Okta

Organization 2Using

Salesforce

Organization 3Using Custom SAML

With Stormpath You Don’t Have to Choose Between Full SSO Support and Multi-Tenancy

Page 10: No-Code SAML Support with Stormpath

Login Workflow with SAML

Identity Provider- Initiated Flows

User

Identity Provider

Service Provider

User

Identity Provider

Service Provider

Service Provider-Initiated Flows

Stormpath supports a seamless SSO experience—end user’s point of entry can be the IdP or the service provider

Not sure if this is the right way to represent this, the actual paths of the arrows are probably more complicated than this.-Vern Shure
Page 11: No-Code SAML Support with Stormpath

Configuration-Based Attribute Mapping

IdP 1firstName=Zeus

IdP 2fn=Zeus

SAML Service Provider

givenName=Zeus

Stormpath lets you quickly and easily maps variables from diverse identity providers to variables within your application

Page 12: No-Code SAML Support with Stormpath

Configuration-Based Attribute Mapping

Stormpath lets you quickly and easily maps variables from diverse identity providers to variables within your application

Page 13: No-Code SAML Support with Stormpath

Demo

Demo Time!

Page 15: No-Code SAML Support with Stormpath

Technical Q&A

Page 16: No-Code SAML Support with Stormpath

Thank You!