ForgeRock Marketplace
Plugins and integrations provided by our partners the developer community
Featured
Microsoft Intune Node
This node integrates with Microsoft Intune and Graph API. It evaluates the device's compliance posture and provides that information to the Journey. It also allows saving device information to the Journey's Shared State which can be used by subsequent nodes.
Socure ID+ Auth Tree Nodes
Socure’s ID+ Platform is the leading solution for digital identity verification and trust. Its predictive analytics combine artificial intelligence (AI) and machine learning (ML) techniques with trusted online/offline data intelligence from physical government-issued identity documents, as well as email, phone, address, IP, device, velocity, date of birth, SSN, and the broader internet to verify identities in real time. It is the only solution that analyzes and correlates every facet of an individual’s digital identity to accurately verify their identity while simultaneously detecting and preventing fraud.
OneSpan Auth Tree Nodes
OneSpan Intelligent Adaptive Authentication (IAA) secures your web and mobile applications by analyzing vast and disparate data acquired through user actions and events. Based on this analysis, OneSpan Adaptive Authentication dynamically assesses which authentication and/or transaction security measures are appropriate for each unique end user.
Onfido Auth Tree Node
Onfido is the new identity standard for the internet. Our AI-based technology assesses whether a user’s government-issued ID is genuine or fraudulent, and then compares it against their facial biometrics. Onfido helps end users bring their Physical Identities to the Digital World providing it's customers with a higher level of assurance of their end users.
Secret Double Octopus Auth Tree Node
Octopus Authentication is a high-assurance, passwordless authentication system engineered to address the diverse authentication needs of a real-world, working enterprise. The Secret Double Octopus solution replaces all employee passwords with a strong, password-free authentication mechanism. Octopus Authentication Node enhances Forgerock’s authentication capabilities by allowing users to authenticate using the Octopus Authenticator mobile app.
Discover
Axiad CBA
Certificate-based authentication (CBA) is one of the most secure, phishing-resistant forms of multi-factor authentication (MFA) and is increasingly deployed in enterprises and the public sector. Many enterprise employees, as well as the majority of federal agencies and defense employees/contractors, use a strong authenticator such as a smart card or hardware device for authentication. CBA streamlines the process of authenticating users with a variety of authenticators while improving overall protection. Axiad provides this example ForgeRock authentication node to simply demonstrate how to enable certificate-based authentication in ForgeRock with Axiad. It is a starting point to build from to a production ready authentication node.
Keyless OIDC
This guide provides a step-by-step process to enable passwordless biometric authentication on Forgerock Identity Cloud using Keyless. Forgerock and Keyless have partnered to deliver a true passwordless authentication experience for both workforce and consumer applications. Keyless will be set up as both an OpenID Connect (OIDC) service provider and an OpenID Connect identity provider (Social Identity Provider) for Forgerock Identity Cloud.
PingOne verify
The PingOne Verify node utilizes the PingOne Verify service to enable four different types of secure user verification. These verifications include: Government ID Facial Comparison Government ID Facial Comparison Reference Selfie Liveness At this time, no other PingOne Verification is supported by this node.
Fingerprint nodes
The Fingerprint Profiler and Fingerprint Response nodes let you integrate your Advanced Identity Cloud environment with the Fingerprint platform to help reduce fraud and improve customer experience. The integration with Fingerprint provides browser fingerprinting directly from an authentication journey with high confidence, at an average score of 99.5%. When you identify browsers or devices with Fingerprint, you get back the visitorId value. You can use this value in your business logic to find suspicious activity or for marketing analytics. In some cases you do not want the client devices receive visitorID value from Fingerprint. Instead, you can receive a random requestID that can be used in business logic. This mode of not sending back visitorID is called Zero Trust Mode (ZTM).