Single Sign-On (SSO)

Simplify authentication and improve security with centralized Single Sign-On

Why SSO Matters for Your Organization

Single Sign-On enables users to access multiple applications with a single set of credentials, eliminating password fatigue and reducing security risks. Visual Guard implements SSO across your entire application portfolio, including legacy systems that traditionally lack native SSO support.

Enhanced User Experience

Users authenticate once and gain seamless access to all authorized applications, including PowerBuilder, .NET, web services, and modern cloud apps.

Reduced Security Risks

Centralized authentication reduces password reuse, simplifies credential management, and provides a single point for enforcing security policies.

Lower IT Costs

Fewer password reset requests, reduced help desk calls, and simplified user provisioning decrease operational overhead by up to 30%.

SSO Across Diverse Application Technologies

Visual Guard enables Single Sign-On across applications built with different technologies, without requiring application rewrites.

Legacy Application Support

  • PowerBuilder applications: Native support for client-server and PowerServer deployments without extensive code modifications.
  • .NET applications: Windows Forms, WPF, ASP.NET, WCF services.
  • Desktop applications: Windows applications with minimal integration effort.

Learn about PowerBuilder SSO implementation

Modern Application Support

  • Web applications: Angular, React, Java, PHP, and other web technologies.
  • APIs and web services: RESTful and SOAP services with token-based authentication.
  • Cloud applications: Integration with SaaS platforms and cloud-native apps.

Integration with Corporate Directories

Active Directory Integration

Active Directory & Entra ID

Leverage existing Windows accounts for seamless authentication across applications. Visual Guard integrates natively with:

  • On-premises Active Directory: Support for Kerberos/NTLM authentication with Windows Integrated Authentication.
  • Microsoft Entra ID (formerly Azure AD): Modern authentication protocols including OAuth 2.0 and OpenID Connect.
  • Hybrid environments: Seamless operation across on-premises AD and cloud-based Entra ID.
  • Federated Active Directory: Support for multiple AD forests and complex enterprise directory scenarios.

Learn more about Active Directory integration →

Other Identity Sources

Support for LDAP directories, database accounts, and custom authentication providers for heterogeneous environments.

SSO Implementation Scenarios

Login First Scenario

Users authenticate at the start of their session (e.g., Windows login) and automatically access all applications throughout the day without additional prompts.

Application First Scenario

Users are redirected to authentication when accessing a protected application, then seamlessly navigate to other authorized applications without re-authentication.

SSO for PowerBuilder Applications

PowerBuilder applications traditionally lack native SSO capabilities. Visual Guard addresses this challenge by providing a plug-and-play solution that requires minimal code changes.

For PowerBuilder Developers

  • Authenticate users with Windows credentials (Active Directory or Entra ID)
  • Implement SSO without extensive PowerBuilder code modifications
  • Unified authentication experience across PowerBuilder and modern applications
  • Support for both PowerBuilder Classic and PowerServer deployments

Simplified Implementation

Visual Guard handles the complexity of connecting PowerBuilder to modern identity providers, enabling you to modernize authentication without rewriting your applications.

The integration typically requires only configuration changes and minimal API calls to Visual Guard's authentication services.

Read our white paper: Modernizing PowerBuilder Security →

Beyond Authentication: Integrated Authorization

Visual Guard extends SSO with comprehensive access control capabilities.

Centralized Permissions

Define user permissions once and apply them consistently across all applications after authentication. Permissions are retrieved automatically during SSO login.

Role-Based Access Control

Map Active Directory groups to application roles automatically, eliminating manual permission management.

Learn more about RBAC →

Real-Time Enforcement

Access rights are enforced immediately upon authentication, with no application-side configuration required.

Technical Implementation

VG Identity Server

Centralized authentication server that all applications trust for user verification and session management. Supports:

  • Windows Integrated Authentication (Kerberos/NTLM)
  • Modern protocols (OAuth 2.0, OpenID Connect, SAML)
  • Multi-factor authentication for sensitive applications
  • Password-based authentication for internal accounts

Explore VG Identity Server →

Session Management

Fine-grained control over authentication sessions:

  • Configurable session timeouts per application or user role
  • Idle timeout policies to protect unattended sessions
  • Single sign-off across all connected applications
  • Session monitoring and automatic termination

Federation and Complex Scenarios

Visual Guard supports SSO in complex enterprise environments with distributed networks and multiple identity sources.

  • Cross-domain SSO: Enable Single Sign-On across applications in different networks or geographic locations.
  • Multiple Active Directory forests: Federate authentication across separate AD deployments.
  • Hybrid cloud scenarios: Seamlessly bridge on-premises and cloud applications.
  • Third-party federation: Integration with external identity providers using SAML or OpenID Connect.

Key Benefits

Security

  • Eliminate password fatigue and weak credentials
  • Reduce phishing risk with centralized authentication
  • Strengthen legacy applications with modern authentication
  • Centralized policy enforcement across all applications

Operations

  • 30% reduction in password-related help desk calls
  • Simplified user provisioning and de-provisioning
  • Faster deployment of new applications
  • Automated synchronization with corporate directories

Compliance

  • Comprehensive audit trails for all authentication events
  • Centralized compliance reporting for GDPR, HIPAA, SOX
  • Consistent security policies across all systems
  • Documentation and evidence for audits

Deployment Flexibility

On-Premises

Full control within your data center with complete data sovereignty and customization options.

Cloud

Deploy on Azure, AWS, or other cloud platforms for scalability and reduced infrastructure management.

Hybrid

Seamlessly bridge on-premises and cloud applications with unified SSO across your entire infrastructure.

Get Started with Visual Guard SSO

Evaluate Visual Guard

Experience Visual Guard SSO capabilities with a free trial. Our trial includes full documentation and technical support to help you evaluate the solution.

Request Free Trial

Questions?

Our team is available to discuss your specific SSO requirements and help you design the optimal implementation for your environment.

Contact Us

Schedule a Demo

See Visual Guard SSO in action with a personalized demonstration tailored to your application portfolio and security requirements.

Request a Demo