While customers have the option to license or subscribe to each product individually, they also have the option to select a unified solution that has been designed to address the needs of an organization in the growth cycle. These categories include Community and Enterprise.

The table below provides a summary of the functionality found in each. Please use the table to determine which edition is right for you. For further assistance, please contact us at sales@openiam.com

Features

Community

Enterprise

Current release 4.2.0.8 4.2.1.0
User Life Cycle Management
Automated provisioning from one or more sources Y Y
Joiners (new users) Y Y
Movers (position change) Y Y
Leavers (disable, terminate) Y Y
Leave of absence, emergency terminations, etc Y Y
Role-based provisioning Y Y
Business rules engine to manage birthright access Groovy script Y
Reconciliation Y Y
Orphan management Y
Entitlement Management
Flexible RBAC model Y Y
Entitlement viewer and editor Y Y
User-defined entitlement types Y Y
Common entitlement engine for WAM and IGA Y Y
Direct entitlements Y Y
Unified view of IAM and target system entitlements Y Y
Business rule builder and engine Groovy script Y
Entitlement synchronization from target applications Y Y
Entitlement provisioning to target Y
Workflow-based group and role membership Y
Access request and approval (workflow)
Service catalog and shopping cart based request-approval Y Y (contains improvements)
Multi-step approvals Y Y
Integrated into self-service portal Y Y
Job profile templates Y
Time-based auto-revocation Y
SLAs and escalations Y
Line-item level approval/rejections Y
Approval delegation Y
Out-of-office delegation Y
Email-based approval Y
Customizable workflows Limited Y
Customizable e-mail templates Limited Y
Request administration (monitor, delegate, cancel) Y
User access reviews
User based certifications Y Y (contains improvements)
Application/entitlement based certifications Y Y
Reports Y Y (contains improvements)
Privileged and service account certifications Y
Dashboard Y
Self-service portal
Supports integration with third party IdP for SSO Y Y
Unified SSO application launch pad Y Y
Self-service password reset (SSPR) Y Y
Change password Y Y
Profile management Y Y
View your access Y Y (improved)
View your direct reports and their access Y Y (improved)
Self-registration Y (single page) Y (multi-page flows)
Integrated request/approval Y Y (improved)
Integrated access review Y Y (improved)
Corporate directory lookup Y Y
Password Management
Flexible password policy Y Y
Password synchronization Y Y
Password dictionary Y
Active Directory password filter Y
Application specific policies Y
Self-service password reset
-Challenge questions Y Y
-One-time link Y Y
-SMS-based one-time token Y Y
Credential provider
Windows Y
Mac OS Y
Administration tools
User management Y Y (improved)
Entitlement management Y Y (improved)
Policy management Y Y (improved)
Audit log viewer Y Y (improved)
Reporting Y
Monitoring (dashboard, health checks, alerts) Y
Integration connectors
Core connectors Y Y
Cloud connectors Y
Enterprise connectors Y
General product features
Integration API Y Y
RPM deployment Y Y
Docker Swarm Y Y
Kubernetes Y
Supports High Availability (HA) configurations Y (RPM and Kubernetes)
Performance optimization Y
Localization 5 languages 8 languages
Support Forums 8x5 or 24x7
Customization through scripting Y Y
Custom connector development Y