SurePassID Solutions for the Public Sector

  • 1-50,000 users
  • VM or “bare metal” install on Windows Server 2016 or later
  • Deployed in agency’s datacenter, Azure VM, in SCIF, etc.
  • Maintained by agency
  • Air-gappable
  • Partly automated – user and token provisioning/deprovisioning
  • Deploys in days
  • Low total cost of ownership

  • Unlimited users
  • Private cloud
  • Deployed in Azure Commercial, GCC, or GCC High
  • Maintained by agency or SurePassID
  • Air-gappable
  • Fully automated – configuration, deployment, user and token provisioning, maintenance, patching, scaling, high availability
  • Deploys in hours
  • Very low total cost of ownership

  • Unlimited users
  • Private cloud
  • Deployed in Azure Commercial
  • Maintained by SurePassID
  • Not air-gappable
  • Fully automated – configuration, deployment, user and token provisioning, maintenance, patching, scaling, high availability
  • Deploys in minutes
  • Lowest total cost of ownership

  • Phishing-Resistant MFA: FIDO2 PIN
    • FIDO2 Biometric
    • FIDO2 Passwordless
    • FIDO2 Mobile Push
  • Non-Phishing-Resistant MFA: OATH HOTP (Event-Based)
    • OATH TOTP (Time-Based)
    • OATH OCRA (Challenge-Response)
    • Mobile Push

  • Windows MFA and RDP + Offline 2FA
    • Linux MFA (PAM) and SSH + Offline 2FA
    • MacOS (PAM) and SSH + Offline 2FA
    • RADIUS  MFA
    • TACACS+ MFA with Cisco ISE
    • FreeRADIUS MFA
    • LDAP MFA
    • Reverse Proxy Server MFA (NGNIX, etc.)

  • Entra ID
    • Active Directory
    • SurePassID Built-In Directory
    • LDAP
    • Third Party (Oracle, IBM, Workday, etc.)

  • SSO
    • Entra ID IdP
    • ADFS IdP
    • M/O 365 IdP
    • SAML2 IdP
    • OIDC IdP
    • LDAP IdP