Secure access to Passwordstate using Active Directory, Microsoft Entra ID or local accounts, with flexible single sign-on and multi-factor authentication options.
Organizations operate across on-premises, cloud and hybrid environments, each with different identity and access requirements. Passwordstate supports multiple identity models and authentication methods so access policies can be aligned with your existing infrastructure.
Authentication requirements can be configured for different users, security groups and access scenarios, including connections from untrusted IP addresses. This allows organizations to apply stronger authentication controls where additional protection is required.
Authenticate domain users through Active Directory using supported single sign-on, manual login and MFA-enhanced authentication configurations.
Authenticate users through one or more Microsoft Entra ID tenants, supporting modern cloud and hybrid identity environments.
Use locally managed Passwordstate accounts for standalone, isolated or mixed environments that do not rely exclusively on Active Directory or Entra ID.
Allow users to access Passwordstate through supported enterprise identity platforms without repeatedly entering their credentials.
Require users to enter their credentials directly when explicit sign-in is preferred or required for a particular access scenario.
Strengthen access using authentication factors such as Duo, RSA SecurID, YubiKey OTP, TOTP, HOTP, RADIUS and SAML-based integrations.
Passwordstate authentication policies can be tailored to different users, security groups and connection scenarios rather than enforcing one sign-in method for every user.
Organizations can apply additional authentication requirements for higher-risk access, including connections originating from untrusted IP addresses, while maintaining a streamlined experience for approved internal access.
Passwordstate integrates with a range of hardware, software and identity-provider authentication methods, allowing organizations to select options that align with their security and infrastructure requirements.
Integrate Passwordstate with RSA SecurID hardware or software tokens to provide an additional authentication factor during sign-in.
RSA SecurIDUse supported YubiKey devices through Yubico OTP or OATH-based TOTP and HOTP authentication for physical token-based access.
YubicoIntegrate with Duo to support additional authentication methods such as push notifications, phone calls, hardware tokens and passcodes.
Duo SecurityAuthenticate using time-based or counter-based one-time passwords generated by compatible hardware tokens, authenticator applications or the Passwordstate mobile apps.
Integrate Passwordstate with supported SAML-compatible identity providers, including Microsoft Entra ID, Google, Okta, OneLogin and Active Directory Federation Services.
Integrate Passwordstate with a RADIUS server to use existing network authentication services and compatible third-party authentication platforms.
Require users to align their assigned PIN with a dynamically generated sequence of randomised characters displayed during authentication.
Send a temporary PIN code to an approved email address or SMS gateway, with the validity period controlled by Passwordstate administrators.
Align Passwordstate authentication with existing identity infrastructure and organizational policies.
Apply authentication requirements according to users, security groups and different access scenarios.
Combine enterprise identity sources, sign-in methods and additional authentication factors to strengthen access to privileged information.
Download a fully functional 30-day trial and configure Passwordstate authentication for your own enterprise environment.