Updated on 2025-10-31 GMT+08:00

Functions

This section describes main functions of OneAccess. You can check if a certain function is available in a region on the console.

User Management

Users can be managed throughout their lifecycle via a unified identity management platform. The platform provides the following functions: adding, deleting, modifying, and querying users, managing users in a multi-organization tree, performing batch operations on users, importing and exporting users, and customizing dynamic user forms.

Identity Source Management

OneAccess synchronizes identity data using the "Upstream – Midstream – Downstream" model. Upstream refers to an identity source for enterprise management, midstream is OneAccess, and downstream indicates an application system that synchronizes identity data with the upstream. In this model, OneAccess synchronizes identity data in upstream systems to downstream application systems in real time, ensuring consistency, accuracy, and security of identity data throughout the user lifecycle, covering onboarding, job transfer, and resignation.

OneAccess can integrate user and organization information of different identity sources, such as AD and LDAP.

Resource Management

You can manage applications, and enterprise APIs in a unified manner. OneAccess supports single sign-on (SSO) based on SAML, OAuth2, OIDC, and CAS. It also supports plug-in auto-fill and SDK/API. After the configuration is complete, users can log in to the OneAccess user portal and access authorized applications in SSO mode. The enterprise API feature is provided, including system and custom API products, facilitating enterprise application invoking.

Authentication Source Management

OneAccess supports multiple third-party authentication sources, including personal social authentication, enterprise social authentication, and enterprise authentication sources. Internal or external authentication sources and multiple protocol interfaces are used to provide unified authentication services for different applications and devices. As an administrator, you can add, modify, and delete authentication providers.

Security

You can add administrators and administrator groups and grant them specific permissions for the administrator portal. In addition, OneAccess provides secure password policies for enterprises. Enterprise administrators can ensure account security through password strength settings, login security settings, and advanced settings.