We performed a comparison between IBM Tivoli Access Manager [EOL], Okta Workforce Identity, and OneLogin by One Identity based on real PeerSpot user reviews.
Find out what your peers are saying about Microsoft, Cisco, Auth0 and others in Single Sign-On (SSO)."SAML 2.0."
"Single Sign-On functionality is valuable because the core purpose of the product is to allow universal (or bespoke) SSO for application suites."
"The integration effort with the end application is quite straightforward and easy."
"The Verify feature: A push method which customers are going for."
"OAuth 2 is now the de facto standard for API protection and scoped authorized delegation. IBM TAM now supports OAuth 2 and can act as fully compliant OAuth 2 authorization server."
"The most valuable features of Okta Workforce Identity are MFA, and SSO, which have high security."
"A solution that's easy to use, stable, and reliable."
"One of the features that I have found to be very valuable is its interoperability and compatibility with all types of resources, whether it's networking, infrastructure, or applications. That is, it is compatible as well as interoperable, as far as the federated authentication is concerned."
"The feature that is most valuable to me is the automated user provisioning that we set up using Okta as a major part of that process."
"It is flexible and easy to install."
"It is dependent on the evolution of your user base. It depends on usage per user, so the more sign-ins there are, the more expensive it becomes, so it works best for smaller companies from a financial perspective."
"The support for YubiKey is really good because you don't actually have to type in your username and password."
"Other than Okta being an easy and awesome integration tool, one of the best features it has is the provisioning and deprovisioning, which makes management way easier. You don't need to be too technical to understand how it works."
"The solution allows the user to search logs based on a specific time."
"It's super useful to have a single pane of glass when it comes to access management."
"Documentation."
"OneLogin is efficient."
"The solution's ability to save and manage of all my passwords is great."
"In my role, the most valuable features are two-factor authentication and self-service password reset. The most helpful feature for the institution as a whole is probably the single sign-on. As an IT director, I care about security and ease of use."
"When it comes to access management, the solution's single pane of glass is extremely important. The single pane of glass for access management enables collaborative work between IT and security. We have access to certain applications that require device trust. Based on the role, we can access those applications through OneLogin Desktop."
"Ease of integration with AD."
"The profiling element is incredibly robust, but also equally as complex, it requires an off-site course to be able to understand the context or the plethora of options available."
"The self-service portal needs improvement."
"Looking at their roadmap, they have a broad grasp of the security features which the industry needs."
"An Amazon Machine Image (AMI) for the newer appliance versions for hosting the virtual appliances on AWS will help."
"Multi-factor authentication with social integration needs to improve."
"It can have more API integrations."
"Therefore, if you have 10 million users, that's almost 100 million, so it is costly."
"Okta Workforce Identity could improve the support system, they are too slow."
"It's not compatible with on-premises installations, unless you host it as a SaaS. We were not able to do that. For example, imagine a scenario where the cloud is not available. Then, Okta will not work for you. That use case will readily fail because it doesn't have an on-premises installation that you can use to authenticate or provide identity and access management. If you have a purely on-premises solution that is not connected to the internet, then this will not work. This is one area that can be improved."
"The product is expensive compared to other tools."
"The only area of concern in the solution stems from the fact that my company needs some help regarding the setup phase from a partner."
"The initial setup can be complex at first."
"You can't hide the device when you're checking logs."
"To offboard, you have to manually click on this checklist, each of the checkmarks. It would actually be really nice if, for offboarding someone, you just click "offboard" and it automatically runs a script to do that."
"More off-hour support."
"I would like better reporting from SmartFactor Authentication when a user is not able to sign in due to a new location, new IP, new device, et cetera."
"I'd like OneLogin to have a customization section that displays the company's offerings, categorized by different topics."
"In terms of managing the users on a large scale, it would be easier if they had some kind of user management portal."
"While I initially used OneLogin's desktop feature to extend SSO, I discontinued it two years ago due to limitations."
"The tool must be made more robust."
"We've been experiencing some pain points since the acquisition. For example, there have been some outages we didn't see previously, which are a big topic with my executive team. You have hundreds of applications relying on this service for login. If the service is unavailable, nobody can log into these applications."
More IBM Tivoli Access Manager [EOL] Pricing and Cost Advice →
Earn 20 points