Understanding SSO Authentication Methods for Jamf Platform Services

Technical Articles

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

Whether you are expanding your Jamf platform solution or preparing to take advantage of new features that rely on OIDC-based SSO through Jamf Account, it is important to understand the available options for Jamf platform authentication. The ideal authentication strategy for your organization should maintain security and scalability for administrators and end users across your entire Jamf platform solution.

This technical guide provides visual breakdowns for both SAML-based and OIDC-based authentication methods, as well as various logout scenarios. These diagrams serve to demonstrate how various integrations work and highlight the differences in the functionality they make possible.

The key concepts discussed in this article include:
  • SAML authentication process flows with Jamf Pro

  • Domain verification requirements and application registration processes

  • OIDC implementation through the Jamf identity broker service

  • The differences between various logout scenarios

  • Critical implementation considerations and best practices

Note:

This guide assumes basic familiarity with identity management concepts and focuses on technical details rather than workflow guidance. For basic information and setup instructions, see OIDC-Based Single Sign-On (SSO) with Jamf Account in the Jamf Account Documentation.