Skip to main content

OneLogin

Status: Scaffold — content in progress

OneLogin is a cloud IdP offering SSO, MFA, and user lifecycle management via SAML 2.0 and OIDC. It competes with Okta and is deployed in mid-market enterprises.

Key Features

FeatureDescription
SSO PortalSAML/OIDC app catalog
OneLogin ProtectPush MFA authenticator app
SmartFactor AuthenticationRisk-based MFA
SCIMUser provisioning to downstream apps
Access ManagementRole-based access policies

Security History

OneLogin disclosed a breach in 2017 where customer data including encrypted SSO keys was accessed — the encrypted keys were used to decrypt session cookies and access downstream applications.

TopicLink
SAMLsaml
Okta Overviewokta-overview