Empowering users with unified single sign-on to all of their applications and self-service features for app, device and account management eliminates redundant solutions and reduces day-to-day helpdesk administration.
All Your Apps
Through a personalized Centrify User Portal, users can simply log in once and then point, click and launch all their SaaS apps. With convenient single sign-on (SSO) users get immediate access without having to remember their username and password for each app and with secure standards like SAML, IT can provide role-based access to apps and replace the use of passwords with secure temporary authentication tokens. Users can even silently authenticate without having to log on when accessing Centrify User Portal from a computer in their corporate network or through a mobile device with Centrify's unique Zero Sign-on (ZSO)
Mobile Zero Sign-On
Centrify's integrated mobile management means users can also access their apps from an iOS or Android device. Once they have unlocked the device, Centrify's unique Zero Sign-On capability lets them silently authenticate to their approved apps without being re-challenged to log in.
Self-Service for Devices and Account Details
The Centrify User Portal also lets end-users easily change their Active Directory password and manage their personal data. The integrated mobile management features means users can also use the Centrify User Portal for tasks such as locating, locking or wiping a lost device.
Self-Service Personal Apps
Users can add their own username/password apps to the Centrify User Portal, relieving IT from having to add and manage every requested app (travel, personal, etc.). This convenience encourages the use of unique and complex passwords, provides centralized visibility to most popular apps within the enterprise, and drives increased overall portal adoption.
Centrify for SaaS allows an IT organization to regain centralized control over users' access to ever-increasing numbers of SaaS applications through role-based access controls and application access logging and reporting.
Policy-Based Strong Authentication
Powerful and flexible access policies for each application let you allow or deny access to an application or require additional authentication factors based on one or more conditions related to the time of day, on/off corporate network, attributes of the user, location or device resulting in the ability to address use cases such as:
"Allow Office 365 access only during business hours (to avoid being sued for overtime)."
"Allow application access only from the corporate internet."
"Send an email alert when this app is accessed outside the U.S."
"If this app is accessed off the corporate network and outside work hours, require multifactor authentication."
"Only trusted (enrolled and managed) devices can access this app."
Options for multifactor authentication include a soft token through the Centrify Mobile Authenticator, interactive mobile phone call, or one-time passcode sent via SMS or email.
Integrated Mobile Management
All Centrify User Suite editions uniquely includes complete mobile management. You can use Active Directory and Windows Group Policy to automate security policy enforcement as well as auto-issuance/renewal of certificates for strong authentication to Wi-Fi and VPN networks. Mobile application management (MAM) provides a customizable mobile enterprise app store for pushing and maintaining rich mobile client apps.
Identity as a Service: Safe and Highly Available
The Centrify User Service (CUS) sets up a live connection to Active Directory, with automatic load balancing and failover, to ensure that your AD data is highly available and kept safe and in your control. CUS can optionally store external users' identity if you do not have Active Directory or want to extend applications to users (such as customers, contractors or partners) who are not in your AD. You can use cloud-only identities, Active Directory identities, or a hybrid management strategy.
Powerful Custom Reports
Comprehensive, customizable reporting provides exportable views of administrative, application access, mobile device and system event information. Pre-canned reports answer common questions, and administrators can create ad hoc reports using standard SQL queries. Users can drill down into the data behind reports to view details on devices, users, apps and roles. Role-based report sharing prevents reporting from circumventing delegated administrative controls.
For organizations that prefer to customize their users' experience, admins can set an organization's corporate colors and brand across the administrative, end-user and mobile portals.
Centrify goes beyond SaaS security and single sign-on. With more than 5,000 global customers, Centrify provides Unified Identity Services across the data center, cloud and mobile that results in one single login for users and one unified identity infrastructure for IT.
Unified Management for SaaS, Mobile and On-Premise Apps
Centrify provides tested support and turnkey integration with thousands of SaaS apps, complete mobile application management and on premise plug-ins for SAP NetWeaver, Java and web applications, and databases so you can get SSO across cloud, mobile and on-premise applications from a single vendor.
Identity as a Service: Identity Where you Want it
With the Centrify User Service (CUS) you need not sacrifice control of your corporate identity. Already considered the innovative leader in leveraging Active Directory, Centrify integrates the Centrify Cloud Service with Active Directory without poking extra holes in your firewall or adding devices in your DMZ. And unlike other solutions, Centrify does not make the fundamental security mistake of duplicating AD into the cloud, maintaining your organization's identity inside Active Directory and under your control.
CUS's live connection to Active Directory, with automatic load balancing and failover, ensures that your AD data is highly available and kept safe and in your control. CUS can optionally store external users' identity if you do not have Active Directory or want to extend applications to users (such as customers, contractors or partners) who are not in your AD. You can use cloud-only identities, Active Directory identities, or a hybrid management strategy. This makes Centrify the industry's most flexible Identity-as-a-Service (IDaaS) offering, enabling quick deployment and eliminating the need for costly and complex new infrastructure.
Deepest Mobile Capabilities
In addition to complete mobile security management Centrify delivers built-in multifactor authentication with Centrify Authenticator soft token, one time passcode (OTP) via text/email, and interactive phone calls, to its fully integrated mobile device, container, app and authentication management functionalities. Centrify also delivers the industry's most flexible and unique mobile per app authentication policies to restrict access or require additional authentication factors.
Ready for the Global Enterprise
With proven success supporting more than 5,000 global enterprises, Centrify provides 24x7 support and has international offices to give you the support and flexibility you deserve. Our multi-region cloud service ensures that your global user communities can obey all local privacy and consumer protection laws without compromising user experience. The Centrify User Suite supports more than a dozen languages, including: English, Spanish, French, German, Italian, Portuguese, Brazilian Portuguese, Simplified Chinese, Traditional Chinese, Korean and Japanese.
Beyond SaaS: SSO for Mac/Linux Workstations and Enterprise Apps
Centrify's Unified Identity Services extend beyond SaaS, providing seamless sign-on to Mac and Red Hat workstations (including smart card support), enterprise applications, and UNIX/Linux servers in your data center.