Not all enterprise applications support federation protocols and for legacy applications evolution may not be an option.
This is why Memority proposes 2 solutions for legacy web applications authentication:
Memority Federation Gateway
Memority Federation Gateway is an on-premise reverse proxy component and provides federation of legacy on-premise Web applications.
Memority Federation Gateway is a mutualized HTTP reverse proxy acting as a federation Server Provider to delegate authentication to Memority Identity Server. The Gateway will consume Memority security tokens and inject user identity information in HTTP headers to protected. For each application, header data injection rules are configurable to match application expected header data in order to replace application former authentication scheme. Applications have to be compatible with reverse proxy authentication delegation.
Memority Replay Gateway
Memority Replay Gateway, on the other hand, is a part of Memority Cloud service and provides Single Sign-On authentication to legacy Web Applications, either Cloud or on-premise, which have a login/password HTTP login form.
Users first register target application passwords into Memority portal. When accessing the applications from Memority application portal, the user browser will be redirected to target application login URL using recorded user application password. Target Web Applications have to be compatible with login/password HTTP POST redirection request.
Read Next
-
Supported Federation Protocols My-Access allows customers to use Memority as Identity Provider (IdP) to access Google Apps, ServiceNow, Azure, Workspace One or any other Cloud or on-premise applications compatible with federation standards such as SAMLv2, OAUTH2/OIDC, WS-Federatio or, WS-Trust.
-
Self-Service Federation Portal My-Access includes Self-Service Federation portal. It allows third-party administrators, usually administrators from the application support team, to onboard, deploy and validate their application federation within Memority.
-
Third Party Authentication (Social Login & Private IdP Proxy) My-Access supports SAML2, OIDC and OAuth2 protocols as Service Provider (SP) in a scenario where user authentication/authorization is delegated to an external Social Network (Meta, Google, X, etc.) or private third party Identity Provider (IdP) using their own local credentials.
-
Integration With O365 And Azure Memority fully supports integration with Office 365 and Azure environment, from authentication/federation of one or multiple O365 domains to provisioning of user accounts and licenses.
-
Legacy Applications