Identity & access
Unified identity across four SaaS products
- Area
- SaaS platforms
- Customer
- Quadient
Users gained a single sign-in and could move between products without re-entering their password.
Scope25,000customer organisations
Scope≈ 150,000migrated users
Scope5 zonesregional operation
Starting point
What needed to change
Four SaaS products ran on different platforms and in several data zones. User identity, profiles and data storage rules had to be unified without losing regional control.
Our responsibility
How we approached the solution
We developed an identity provider supporting OIDC, OAuth, WS-Federation, BankID, Apple ID and other methods. We prepared the account migration and kept profile management in the original applications.
Part of the delivery
A complete scope
- Identity provider
- Single Sign-On
- Account and profile migration
- Regional data storage rules
Impact
What the customer gained
- After two months of development, users could move between products through a single sign-in.
- The solution respected the differing rules for the USA, the EU, the United Kingdom, Canada and Australia.
- Passwordless sign-in could be used for access to confidential documents.
Technologies and approaches
- OpenID Connect
- OAuth
- WS-Federation
- BankID
- Apple ID
