IDaaS integrations
You can integrate Identity as a Service with the following:
Generic API Risk Engine
An external risk engine provider is a source of risk alerts or risk events. The IDaaS Generic API risk engine supports integration with external risk engines. IDaaS evaluates risk contexts from an external risk engine to build risk engine rules. With an external risk engine API integration, your organization implements a service that can be reached by REST. The integration works as shown in the following figure:
IDaaS AD FS Adapter
The IDaaS AD FS Adapter uses the pluggable multi-factor authentication (MFA) option of AD FS to integrate Identity as a Service with AD FS. The IDaaS AD FS Adapter includes an installer to install the Identity as a Service plug-in.
IDaaS Apache Filter
The IDaaS Apache Filter solution uses Identity as a Service to provide strong second-factor authentication to generic forms-based and Identity as a Service password authentication types. The solution consists of the filter component and the Authentication Application (AuthApp) component. You can use the Apache Filter with the Identity as a Service authentication methods
IDaaS Desktop
IDaaS Desktop provides strong second-factor authentication to Windows Desktop Login (online or offline). Local users of the computer on which the IDaaS Desktop for Microsoft Windows is installed are not required to use second-factor authentication to log in.
IDaaS ISAPI Filter
The IDaaS ISAPI Filter solution provides strong second-factor authentication to Microsoft Outlook Web Access (OWA), Remote Desktop Web Access (RD Web Access), Integrated Windows Authentication (IWA), SharePoint, and generic TMG forms-based authentication types. The solution is made up of two components: the filter component and the authentication application component.
PSD2 compliance
You can integrate Identity as a Service for PSD2 compliance with European Banking Authority (EBA) Regulatory Technical Standards for Strong Customer Authentication, Article 98 of Directive 2015/2366 (PSD2) (see Article 5, Dynamic Linking).
SIEM Syslog
SIEM integration with Identity as a Service allows audit logs to be sent to syslog through an Enterprise Service Gateway. The Syslog SIEM application downloads audit logs from Identity as a Service into your Enterprise Service Gateway and publishes them to your on-premise SIEM syslog server. For more information on audit logs, see View and export audit logs.
Splunk SIEM
The Entrust Identity as a Service Add-on for Splunk enables centralizing your Identity as a Service authentication and management audit events in Splunk™ Enterprise and Splunk™ Cloud. The Identity as a Service Splunk Add-On is located at https://splunkbase.splunk.com/app/4204.