Skip to content

Enterprise Features

PRO Feature

Enterprise features require a PRO tier license.

CertifyClouds PRO includes enterprise-grade features for organizations with advanced authentication, multi-user, and B2C tenant monitoring requirements.


Overview

Enterprise features include:

  • SSO/OIDC: Single Sign-On integration with Azure AD, Okta, and other OIDC providers
  • B2C Tenant Registry: Monitor credential expiry in Azure AD B2C tenants
  • Multi-User Support: Multiple users with role-based access control

Feature Summary

  • SSO Setup

    Integrate with Azure AD, Okta, or any OIDC provider for Single Sign-On.

  • B2C Registry

    Monitor credential expiry across your Azure AD B2C tenants.

  • User Management

    Manage multiple users with roles and permissions.


Comparison: STARTER vs PRO

Enterprise Feature STARTER PRO
Local username/password auth
SSO/OIDC integration
B2C Tenant Registry
Multiple users
Role-based access control

Prerequisites

Before configuring enterprise features:

  1. PRO license: Enterprise features require PRO tier
  2. Admin account: Must be logged in as administrator
  3. Identity provider access: Admin access to Azure AD, Okta, etc. for SSO setup

Getting Started

1. Configure SSO (Optional)

If your organization uses centralized identity:

  1. Set up SSO with your identity provider
  2. Test SSO login
  3. Optionally disable local password authentication

2. Add B2C Tenants (Optional)

If you have Azure AD B2C tenants to monitor:

  1. Register B2C tenants in CertifyClouds
  2. Run initial discovery
  3. Configure expiry alerts

3. Manage Users

Set up your team:

  1. Create user accounts
  2. Assign appropriate roles
  3. Configure SSO auto-provisioning (if using SSO)

Security Considerations

Authentication Options

Option Description Security Level
Local only Username/password stored locally Basic
SSO only Disable local auth, SSO required Enhanced
SSO + Local Both options available Flexible

Recommendations

For production environments:

  1. Enable SSO for centralized identity management
  2. Disable local auth after SSO is working
  3. Use MFA via your identity provider
  4. Review audit logs for authentication events

Support

For enterprise feature support: