IAM Standards and Protocols

SAML 2.0

SAML 2.0 is the established standard for federated single sign-on, allowing ANOW! Automate users to authenticate once against a corporate Identity Provider (IdP) and access the platform without re-entering credentials. This integration aligns access with enterprise identity standards, strengthening security and improving user experience.

SAML 2.0

About the Integration

The SAML 2.0 integration enables ANOW! Automate to function as a Service Provider (SP), delegating user authentication to an external Identity Provider (IdP) such as Microsoft Entra ID, Okta, or Ping Identity. This federated approach ensures that ANOW! Automate access adheres to corporate identity standards and leverages existing identity governance processes, so when a user attempts to log in, ANOW! Automate redirects them to the configured IdP for authentication. After successful verification, the IdP sends a signed SAML assertion back to ANOW! Automate, which then establishes a user session.

ANOW! Automate uses the SAML assertion solely to authenticate and identify the user, typically via their email address. It does not derive application roles or permissions directly from SAML attributes. Authorization within ANOW! Automate is managed independently; user roles and permissions must be configured locally within the platform or resolved through LDAP group membership, depending on the specific deployment architecture. This separation ensures granular control over access within the automation environment.

This integration is designed for large enterprises in financial services, manufacturing, and retail that manage complex, hybrid IT landscapes and require robust, compliant identity management solutions. It helps IT operations and security teams centralize identity lifecycle management, enforce corporate authentication policies, and provide comprehensive auditability across critical IT infrastructure, including workload automation.

Integration Benefits

Unified Access Control

Achieve seamless single sign-on for ANOW! Automate, allowing users to access the platform using their existing corporate credentials. This reduces credential sprawl and improves user experience, aligning with enterprise-wide identity standards.

Enhanced Security Posture

Enforce corporate authentication policies, including multi-factor authentication and conditional access, directly through your IdP. ANOW! Automate inherits these controls, ensuring that access to critical automation aligns with your organization's security standards.

Automated Lifecycle Management

Streamline joiner, mover, and leaver processes by tying ANOW! Automate access to your central identity provider. User deprovisioning happens automatically, reducing orphan accounts and minimizing the operational burden on platform administrators.

Simplified Compliance & Audit

Generate clear audit trails within the identity provider to provide end-to-end evidence of authentication events and applied controls. This strengthens the control environment around workload automation and supports regulatory requirements, such as GDPR and DORA.

Use Cases

Workflows Supported by This Integration

IDENTITY MANAGEMENT

Centralized Single Sign-On

Enable users to access ANOW! Automate with their corporate credentials to reduce password fatigue and enhance security.

SECURITY & COMPLIANCE

Enforce MFA and Conditional Access

Apply corporate multi-factor authentication and conditional access policies to ANOW! Automate access.

IT OPERATIONS

Automated User Deprovisioning

Automatically revoke ANOW! Automate access when a user's corporate account is restricted or removed.

ACCESS CONTROL

Group-Based Role Mapping

Map corporate group memberships to ANOW! Automate roles for streamlined access management.

Get more insights

FAQs

Do you have more questions?

Ready to start your journey?