GITRIX SSO Gateway: One secure login for all your applications
You know the drill – every new corporate system means another username and password for users to remember. And for the IT department, it means another system requiring complex access management.
With the GITRIX SSO (Single Sign-On) Gateway, this chaos ends. You get a central and highly secure point for all your corporate applications. An employee logs in just once and gains seamless, secure, and passwordless access to the intranet, CRM system, HR portal, and corporate VPN.
Why both your users and IT department will love GITRIX SSO
- Invisible login directly from Windows (Kerberos): The best login is the one the user doesn’t even notice. If an employee securely logged into their computer in the morning (for example, with a smart card), the GITRIX SSO Gateway knows it. By adopting the identity from Windows (Kerberos protocol), it can automatically utilize this login. The user opens a browser, clicks on a corporate application, and is instantly inside – without a single additional prompt or data entry.
- Custom security for every application: Every corporate system carries a different level of risk. While a standard login is sufficient for the internal cafeteria menu, you might require maximum security for the financial system. The SSO gateway allows administrators to define permitted methods and different security levels for each application individually. You can specifically enforce additional verification (e.g., a PUSH notification to a mobile phone or inserting a smart card), even if the user is currently already logged into the system.
- One ecosystem: The same factors for applications as for the OS: Whether it’s a cloud service or a local system, users can authenticate themselves in exactly the same way as when unlocking their computer. The applications fully support login via your smart card (SmartCard Logon), approval through a mobile PUSH notification, or biometric passwordless authentication. Everything is unified into a single visual style.
- Automatic access control using groups: Be absolutely certain that only the right people get access to your applications. You can elegantly condition access to specific systems in the SSO gateway based on membership in a defined user group (e.g., directly from your Active Directory). If an accountant changes departments or leaves the company, a change in the Active Directory will cause the SSO gateway to instantly and automatically deny them access to the linked financial applications.
- Smart self-service for external workers: Corporate networks today are commonly used by external contractors, to whom you often cannot issue a corporate smart card. If an external user logs in and does not have a primary GITRIX factor set up, the system intuitively guides them through a prompt to register their own second factor. They can easily, and without your IT’s assistance, pair their own code generation app (e.g., Google/Microsoft Authenticator) or use their private FIDO security key.
- 100% compatibility with your systems: Our SSO gateway supports all modern and globally recognized standards for secure communication, such as SAML 2.0, OpenID Connect (OIDC), and OAuth 2.0. You can easily connect it with anything your company uses, including popular VPN gateways (e.g., FortiGate).
Unify your corporate login. Free your employees from passwords, give freedom to external contractors, and gain granular control over who accesses your enterprise data and how.
Key Features
SAML 2.0 & OIDC Protocol Support
Support for standard protocols ensures system openness without vendor lock-in.
Same Login Methods as the Operating System
Means issued for logging into the operating system can be conveniently used for corporate applications.
Built on Open Core Keycloak
Already using your own Keycloak? Excellent. We will extend it with our features and you can use GITRIX to the full.