Support SAML authentication for Single Sign-On
Having options for increased authentication security is greatly appreciated, and for our organization, is basically a hard requirement for IT systems (and is used everywhere else if at all possible).
Having support for SAML in SimpleMDM would significantly increase our interest in using it. Anything that allows you to control company-owned devices should be extremely secure - SAML lets us use our own Identity Provider and control general access, login policies, multifactor requirements, and more.
Preferably, the implementation would allow for JIT user creation, or even better, user creation & deactivation provisioning options (preferably via SCIM).
For reference, we use Okta as our IdP. My opinion is that it's best to focus on the core SAML and SCIM functionality instead of vendor-specific APIs, as all major IdP vendors use SAML SCIM. This would allow for auth via Okta, Ping, OneLogin, ADFS, Centrify, many more etc.
-
AdminSimpleMDM (Admin, SimpleMDM) commented
Hi Mike- The SAML integration is for admin access to SimpleMDM, not device enrollment. Sorry about that.
-
Malone, Mike commented
Great to hear! Does it allow you to enable self-service enrollment where users just boot up the device and enter their username and password? This is preferable for us since the user is then tied to the device(s) they enrolled.
-
Owen Pragel commented
Using the SAML SSO beta now, it is swell.
Thanks to the SimpleMDM team for the quick turnaround!