Single sign-on to 13 services
Every Atlas ecosystem product connects to the directory: one employee account for the whole company.
A Russian authentication and authorization platform: one account directory for employees, servers, network equipment and web services. Kerberos and LDAP, group policies, TACACS+ for network devices — fully on-premises and operable without internet access.
An employee is created once and gains access to every corporate service according to their rights. Offboarding or a role change takes effect instantly and everywhere. No local passwords on servers and switches, no forgotten accounts after someone leaves.
one account for all 13 ecosystem services and external systems
access to servers, equipment and applications is defined by directory group membership
every login and administrator action is recorded and exported to SIEM
Kerberos V5 and LDAP: an employee signs in once and reaches every corporate service without re-entering a password. Workstations and servers join the domain, keys rotate automatically.
Web and cloud applications connect over modern federation protocols. The directory stays the single source of truth for accounts; applications store no passwords.
Rights are granted through group membership rather than server by server. Nested groups, delegation to department administrators, host-based access control and sudo policies.
One-time passwords and hardware tokens for administrators and remote access. Password policies: complexity, lifetime, history, lockout on brute force, permitted login hours.
An in-house TACACS+ module: an administrator logs in to a switch or router with a domain account, the privilege level follows the directory group, and every command is logged.
Tamper-protected logs of logins, account changes and administrator actions. Retention of at least 12 months, syslog export to a security monitoring system.
Every Atlas ecosystem product connects to the directory: one employee account for the whole company.
External and cloud applications authorize users through the directory without storing passwords.
Access to servers, equipment and applications changes with a single action — moving the employee to another group.
A second factor for administrators and remote access, password policies matching security requirements.
Who signed in where and when, which commands were run on equipment — exported to your monitoring system.
Runs in an isolated network: no calls to foreign services, licensing is local.
Trust with the existing forest and gradual account migration without downtime.
Client agent for Astra Linux, ALT and RED OS: domain join, policies, key rotation.
Multi-master replication between sites with automatic failover of a node or a whole site.
Scheduled and manual directory backups, point-in-time recovery, disaster recovery scenarios.
A full set of operating documentation, administrator guide and integration specifications.
Perpetual licences with no external activation servers; the absence of internet does not affect operation.
A single directory instead of local passwords on servers and equipment. Onboarding and offboarding in one action.
Multi-factor authentication for privileged accounts, end-to-end audit and event export to your monitoring system.
A domestic platform with migration from Microsoft Active Directory, local licences and support from Russia.
We use cookies to make the service more convenient. Learn more — cookie policy and privacy policy.
Leave your contact — we will show the product on your task and prepare an offer.
Service: Атлас Идентификация