Using Federated IDs to restrict third party access to Adobe Analytics. | Community
Skip to main content
Level 2
January 2, 2020
Solved

Using Federated IDs to restrict third party access to Adobe Analytics.

  • January 2, 2020
  • 1 reply
  • 3146 views

Hi,

We currently limit access by third parties to Adobe Analytics using the IP address Security setting within Company Settings, but have seen the message that this will be removed soon. Adobe Support have suggested using federated IDs, but I can't see how this would work for third parties access as I wouldn't be controlling their SSO, i'm assuming it would be controlled by their company.

Has anyone else restricted third party access by IP to Analytics using federated IDs?

Any help would be appreciated.

Thanks

This post is no longer active and is closed to new replies. Need help? Start a new post to ask your question.
Best answer by Andrew_Wathen_

I don't think this can be done.  Adobe does allow you to mix and match Identity types so you could use 'Federated ID' to manage your internal users and 'Adobe ID' to manage third parties.  In which case you many want to restrict the level of access that those using the Adobe ID have.

 

If your company uses something like Azure Active Directory, you may be able to use this to allow authentication on to devices not on your corporate network.  This wouldn't be locked to an IP address range but could enforce 2 factor authentication.

1 reply

Andrew_Wathen_
Community Advisor
Andrew_Wathen_Community AdvisorAccepted solution
Community Advisor
January 21, 2020

I don't think this can be done.  Adobe does allow you to mix and match Identity types so you could use 'Federated ID' to manage your internal users and 'Adobe ID' to manage third parties.  In which case you many want to restrict the level of access that those using the Adobe ID have.

 

If your company uses something like Azure Active Directory, you may be able to use this to allow authentication on to devices not on your corporate network.  This wouldn't be locked to an IP address range but could enforce 2 factor authentication.