Edge Security
Use the ForgeRock Edge Security software to integrate web applications, APIs, microservices, Internet of Things devices, and cloud-based services with the ForgeRock Identity Platform.
Edge Security modules:
Identity Gateway module
ForgeRock Identity Gateway helps you integrate web applications, APIs, and microservices with the ForgeRock Identity Platform, without modifying the application or the container where it runs. Based on reverse proxy architecture, it enforces security and access control in conjunction with the Access Management modules.
ForgeRock Identity Gateway software provides the following capabilities:
-
Protection for IoT services, microservices, and APIs
-
Policy enforcement
-
Adaptable throttling, monitoring, and auditing
-
Secure token transformation
-
Support for identity standards such as OAuth 2.0, OpenID Connect, SAML 2.0, and UMA 2.0
-
Password capture and replay
-
Rapid prototyping
Required modules: none.
Feature | Description | Documentation |
---|---|---|
Studio |
User interface for rapid development and prototyping. |
|
Single sign-on |
Single sign-on in a single domain and across domains. |
|
Password replay |
Secure replay of credentials to legacy applications or APIs. |
|
Policy enforcement |
Enforcement of centralized authorization policies for applications requiring Access Management. |
|
Federation |
OpenID Connect 1.0. |
|
OAuth 2.0. |
||
SAML 2.0. |
||
SAML resources for mobile applications. |
||
Finance APIs |
Support for OAuth 2.0 Mutual TLS and Financial-Grade APIs. |
|
WebSocket protocol |
Detection of requests to upgrade from HTTPS to the WebSocket protocol, and creation of a secure, dedicated tunnel to send and receive WebSocket traffic. |
|
Throttling |
Throttling to limit access to protected applications. |
|
UMA resource server |
Protection for resources and services according to the UMA 2.0 standard. |
|
DevOps tooling |
Deployment of basic and customized configurations through Docker. |
|
Integration with ForgeRock Identity Cloud |
Protection and integration of APIs and applications with ForgeRock Identity Cloud for authentication and authorization. |
Microservices Security Module
Required modules: none.
Microservice | Description | Documentation |
---|---|---|
Identity Gateway |
Identity Gateway standalone deployed as a microgateway, securing microservices with OAuth 2.0. |
|
Token Validation Microservice |
Platform satellite for introspection of stateful and stateless OAuth 2.0 access tokens. |