Product and Support News

AuthPoint Unified Session Between SAML and OIDC: Now Available

AuthPoint now keeps a single sign-in session across SAML and OIDC applications. Until this release, AuthPoint held a separate session for each protocol, so a user who authenticated to an OIDC application and then opened a SAML application a few minutes later was challenged again, even though they'd already proven who they were. With Unified Session, one authentication now covers both protocols for the life of the session: the user signs in once and moves between SAML and OIDC applications without a second MFA prompt.

This closes a gap our own launches surfaced. Passkeys reached OIDC applications in February, External MFA for Microsoft Entra ID went generally available in March, and passkeys reached SAML applications in May. Once the same passkey covered both protocols, the fact that AuthPoint still treated them as two separate sessions became hard to miss. This release delivers it: identity, not protocol, is now what AuthPoint tracks a session against.

Unified Session applies automatically — there's nothing to turn on — to SAML and OIDC applications federated through AuthPoint in any account that already has both protocols configured in WatchGuard Cloud and is included with AuthPoint MFA and AuthPoint Total Identity Security licenses at no additional cost — see the AuthPoint release notes and Help Center for details, or reach out to your WatchGuard Account Manager with questions.

Archivado bajo: Authentication