Single Sign-On to cloud and on-premises applications: Azure SSO lets users authenticate once to the identity platform and then access many integrated cloud and on-premises applications without re-entering credentials, centralizing authentication and improving the user experience.
02
SAML 2.0-based federation: For applications that support SAML, the identity provider issues signed SAML assertions to authenticate users and convey their attributes, establishing federated single sign-on with the application as a relying party.
03
OpenID Connect / OAuth 2.0 support: Modern applications can use OpenID Connect and OAuth 2.0 flows for authentication and authorization, with the platform issuing ID and access tokens that carry identity and permission claims.
04
Password-based SSO: For applications without federation support, the platform can securely store and automatically submit user credentials on the user's behalf, delivering a single-sign-on-like experience to form-based login apps.
05
Seamless SSO (Kerberos-based for domain-joined devices): On corporate, domain-joined devices, seamless SSO uses Kerberos to sign users in automatically to cloud resources without a password prompt when they are on the corporate network.
Your plan caps how many capabilities are shown — upgrade to see the full list