For the best web experience, please use IE11+, Chrome, Firefox, or Safari
OneLogin + One Identity delivering IAM together. Learn more

OneLogin Desktop

Device trust and the journey to passwordless authentication
OneLogin Desktop
Welcome to OneLogin Desktop

Welcome to OneLogin Desktop

It's a brave new world. One where employees and contractors work remotely accessing cloud apps outside of the corporate firewall and on a wide variety of devices.

That's why you need a brave new device strategy to complement your identity and access management strategy.

Sign in once—and be done

Sign in once—and be done

Users log in once and have access to all the apps in their OneLogin Portal as well as SAML-enabled desktop apps. No need to sign in again. Users access apps with passwordless authentication. With Desktop Pro, they can even sign into their laptop with their OneLogin password, eliminating the separate laptop password completely.

Enforce secure and easy multi-factor authentication, everywhere

OneLogin Desktop dramatically increases security with additional two-factor authentication. Users authenticate when they log into their OS using their device password and the installed OneLogin Desktop certificate, providing an additional layer of MFA that further protects access to applications. Make access fast and secure even for remote workers and road warriors.

1st authentication factor

Users log in using their Windows or OS X password as their first authentication factor.

2nd authentication factor

OneLogin Desktop installs a certificate specific to the user and laptop, providing a second authentication factor.

User authenticated into portal

These two factors authenticate users into their OneLogin Portal, enabling them to access SaaS applications with a single click.

KEY CAPABILITIES

ONELOGIN DESKTOP

ONELOGIN DESKTOP PRO

Strong authentication with OneLogin Desktop Certificate

OneLogin Desktop issues a unique certificate to each PC or Mac for strong authentication, which can be revoked by admins in case of a lost device.

checkmark
checkmark

MDM deployment support

Admins can securely deploy OneLogin to groups of PCs and Macs with 3rd party solutions such as Airwatch, JAMF, Meraki, etc.

checkmark
checkmark

Simple for IT to manage

Easy device and security policy management, all in one place. Makes it easy and fast to onboard new employees and offboard former employees.

checkmark
checkmark

Shared workstation / kiosk mode

Support multiple users for one machine to eliminate password sharing. When a user signs in to the Tray App, it binds the profile to that user with a specific certificate.

checkmark
checkmark

Device authentication

Users sign into their PC or Mac with their OneLogin password at boot time and the lock screen.

cross
checkmark
Always authenticate against a directory

Always authenticate against a directory

With today’s distributed workforce, it can be months before a device touches the corporate network. If you’re using Active Directory for authentication, that puts you at risk of stale passwords and permissions.

OneLogin Desktop binds machines to the OneLogin Cloud Directory. If you’re cloud-first, that may be all you need. If you’re using Active Directory, OneLogin synchronizes with it to manage identities and credentials without requiring binding to an AD domain—making it even easier to move off AD completely.

Control device access and revoke it, as needed

Control device access and revoke it, as needed

Using the OneLogin Trusted Experience Platform™, restrict access so only devices that have OneLogin Desktop installed can be used to access apps. This ensures that only devices sanctioned by IT gain corporate access. OneLogin issues a unique PKI certificate to each machine.

Laptop stolen or missing? Revoke the certificate to prevent bad actors from logging into the laptop account and accessing corporate resources.

Cut password resets

Eliminating passwords through SSO reduces password reset requests which typically account for 20% to 30% of helpdesk load. Users receive automated password expiration notices, enabling self-service password reset.

Increase user productivity

Fast, secure SSO gets users to the apps they need, quickly. Streamlined authentication saves minutes and even hours a day and makes for more satisfied employees.

Secure all your apps, users, and devices