OIDC-Based Single Sign-On (SSO) Enhancements
You can configure multiple identity providers (IdPs) for a single domain. For more information, see Adding an SSO Connection in Jamf Account.
You can share a domain with another organization. For more information, see SSO Domain Sharing.
You can specify session duration and inactivity timeout for any app using your IdP in Jamf Account. Currently, these are respected by Jamf Protect and Jamf Account.
Backchannel logout is automatically enabled for all configured SSO connections. Backchannel logout is currently respected by Jamf Pro, Jamf Protect, Jamf Security Cloud, and Jamf Account. When you log out of one of these apps, you are automatically logged out of all of the connected apps as configured in your SSO connection settings in Jamf Account.
You can use Okta's global token revocation features with Jamf Account. This allows you to revoke all tokens and sessions for a specified user, and can be used with Universal Logout in Okta Workforce Identity Cloud.
Partner Experience Enhancements
You can create a quote for prospective customers, save or edit the quote, and purchase their desired Jamf solutions and services all from within Jamf Account. For more information, see Partners in Jamf Account.
You can provision Elevate for your customers.