miniOrange SAML SSO Apps for Data Center
Why miniOrange?
What is SSO?
Single sign-on (SSO) is a session and user authentication service that allows a user to use one set of login credentials (e.g., username and password) to access multiple services and applications.
In SSO, credentials of all the users are stored on the trusted third party, Identity Provider(IDP). That IDP is connected to the application providing services, Service Provider(SP). Now whenever a user tries to access any service on SP, a request to sent to IDP and it authenticates the user and then the user can access services on SP. The IDP is connected to many SPs. So for using services on all those SPs, we need to remember only one set of credentials(IDP credentials).
For Single sign-on, most commonly used protocols are SAML, Kerberos/NTLM, OAuth 2.0, OpenID Connect (OIDC), JWT, etc
miniOrange SAML SSO Apps for the Atlassian Applications
miniOrange provides SAML SSO plugins for all the Atlassian servers (Jira, Confluence, Bitbucket, Bamboo and Fisheye) and for Atlassian Data Centers (Jira, Confluence and Bitbucket). And we provide support for all the known IDPs - miniOrange, Google Apps, ADFS, Okta, OneLogin, Azure AD, Salesforce, Shibboleth, SimpleSAMLphp, OpenAM, Centrify, Ping, RSA, IBM, Oracle, Bitium, WSO2, NetIQ, etc.
Here are our SAML plugins:
Feature Comparison:
Both miniOrange and Atlassian provide SAML SSO feature in all Atlassian host applications. miniOrange SAML plugins are rich in features and very easy to setup. All the features of both Atlassian SSO2.0 and miniOrange SAML plugins are listed and compared below.
Single Sign-On Features:
Feature | miniOrange SSO plugins | Atlassian SSO2.0 plugin |
---|---|---|
Basic Single Sign-On | ||
Support for 20+ IDPs | ||
Import metadata using file/URL | ||
Metadata Rollover - Automatic Sync of IDP metadata | ||
Provision of testing the configuration before actually doing SSO | ||
Configurable SP URLs | ||
Provision to customize SP metadata | ||
Download SP metadata option | ||
Option to choose NameID format |
Security Features:
Feature | miniOrange SSO plugins | Atlassian SSO2.0 plugin |
---|---|---|
Provision to Encrypt and Decrypt SAML requests and responses | ||
Provision to send signed requests | ||
Provision to customize the SP certificates |
User and Groups Provisioning:
Feature | miniOrange SSO plugins | Atlassian SSO2.0 plugin |
---|---|---|
Synchronization of user profile Attributes | ||
Choice of login attribute - Username/Email | ||
Regex for username - To use part of the email as username | ||
Assigning groups with application permissions to users on SSO | ||
Synchronization of groups on SSO | ||
Provision to map groups from IDP to local groups |
Redirection Rules:
Feature | miniOrange SSO plugins | Atlassian SSO2.0 plugin |
---|---|---|
Auto Redirect to Identity provider for Login/Force Authentication | ||
Emergency URL(If admin gets locked out) | ||
Provision to customize the Login Template | ||
Provision to customize the Logout Template | ||
Provision to customize the Error Template |
Other Features:
Feature | miniOrange SSO plugins | Atlassian SSO2.0 plugin |
---|---|---|
Export Configurations to a file | ||
Import plugin configurations - Easy to migrate to a new instance | ||
Troubleshooting feature | ||
Remember Login feature |