SAML/SSO for Incontrol

We have an internal requirement to use only Cloud applications with SSO for security purpose.
SSO provide a simple and secure way to access to the admin console on SaaS service.
For now, you have only for InControl a federation with Google.
We need an open and validated federation with ADFS / Okta / ADP / …
All new services offer this option (Webex, Microsoft, Salesforce, AWS, Surveymonkey, Github, …) including your competitor on the SDWAN market !

10 Likes

We have another customer request for Okta integration with InControl2, so bringing this topic to light again.

1 Like

i agree with this request, SSO integration is a basic requirement these days. many companies cannot use things that do not support SSO.

1 Like

And here’s another vote for this feature.

Another vote for this feature. Don’t forget about OneLogin!

I need BYO IdP before I can implement InControl for my enterprise. Cradelpoint does this today (7/29/2024) which will be direction I have to go until this is corrected.

Bumping this topic again.

1 Like

+1, this would be useful

1 Like

+1 here as well. Our org really does not want us using cloud services unless they can be implemented with SAML SSO

We use some automation to help us use SSO, it has some limitations but it works well…

we have a group in AzureAD/Entra, and an automation that use graph API to read the members of that group and then iterate through the organizations it can access with its IC2 account using the IC2 API and compare the members and add/remove as needed. Then our staff can login with oauth for SSO.

2 Likes

SSO for Entra would be a valuable feature

1 Like

another +1. peplink ID supports FIDO2 and OIDC it seems, but exposes zero to us to allow our own IdP. this is an absolute nightmare for giving employees/support personnel to client organizations as suspending the user account at the IdP level does nothing to prevent a password login.

i 100% agree that proper SSO needs to exist for IC2 and this is a limiting factor to true enterprise plays for Peplink.

2 Likes

Another vote for SSO via Azure AD

cannot understand why this isn’t implemented yet. its makes IC2 basically a non-starter in enterprise environment. +1 Entra ID /Azure AD

3 Likes

+1 This would be very helpful

2 Likes

@Keith / @Michael is this something that we can get implemented? Proper SSO interfaces that can be enforced (i.e., a client doesn’t want a fired employee to access things). At a minimum today, we need to be able to disable user/pass authentication and only allow via say Microsoft, Google, etc. with approved domains.

2 Likes

Yes, this definitely makes sense. @Giedrius will help follow up with engineering. Thanks.

5 Likes

I am also voting yes.

1 Like

@Keith do you have a sense of which IdPs may be supported as you review this request? Auth0, Entra, Okta etc?

1 Like

Hi Colin,

we are reviewing possible options and need a bit more time to do the study and research on our side. Give us some more time before we can get back to you.

G.

1 Like