What is SAML?
Upsides of SAML
- Tested and proven to be stable for over 20 years
- Strong support from enterprise IdPs (Okta, Azure AD, Shibboleth)
- Passwords stay centralized
- Simple security model without the need to manage tokens
Downsides of SAML
- XML is difficult to read and metadata XML exchanges can be error-prone
- Strictly browser-centric without native support for mobile apps or APIs
- Rarely used aside from enterprise applications, and mostly maintained for compatibility reasons
- Missing modern security features like revocation or introspection
- Revocation: the ability to invalidate access before the assertion naturally expires
- Introspection: the ability for a system to ask the IdP if an assertion is still valid
Enterprise 2FA with tap and go login plus an integrated password manager. One key for all your passwords. Experience fully automated login and security. For example, faster MFA, auto-OTP, password manager, and worry-free workflow with proximity-based privileged access management for Windows 11, 10, 8, 7, VPNs, websites, and desktop applications including MES, EHR, CAD/RMS, and more. Overall, a massive upgrade to security and efficiency.