Click Play to watch a tutorial presentation on Single Sign-On and User Provisioning for Salesforce
Identity management software has proven itself in terms of functionality, cost savings, user experience and improved security — but most do not support SaaS applications like Salesforce. Ping Identity® offers two solutions to enable SSO for Salesforce CRM — PingFederate® and PingConnect™. They extend Internet SSO and user provisioning to Salesforce CRM. PingFederate is a software solution installed on-premise. PingConnect is an on-demand managed service. Both automate provisioning, deliver seamless SSO for the many ways users access Salesforce CRM, deploy rapidly and work with existing infrastructure.
PingFederate is Ping Identity’s award-winning federated identity software that provides secure Internet SSO for all external partner connections, including Software-as-a-Service (SaaS), Business Process Outsourcing (BPO) providers, managed services, trading partners, affi liates, acquisitions and customers. PingFederate’s point-and-click connection confi guration, out-of-the-box integration kits, multiprotocol support, and user provisioning enable rapid deployment. PingFederate makes external applications easier to use, reduces administrative costs and strengthens security.
PingConnect is the industry’s first complete on-demand Internet SSO service for Salesforce CRM. It improves user adoption by making Salesforce CRM easier to access from multiple access points, such as Web browsers, mobile devices, Outlook plug-ins and email. Powered behind the scenes by PingFederate, PingConnect integrates with an organization’s existing directory and authentication mechanisms. It is the perfect solution for customers with limited IT resources and short deployment timelines.

PingIdentity's Salesforce Solutions eliminate duplicate administrative work and manual maintenance of user accounts by providing automated account provisioning. Administrators create a group or filter to contain all Salesforce users in the existing corporate directory. Then add, modify and delete Salesforce users using existing directory management techniques. As changes are made to user accounts in the corporate directory, PingFederate automatically replicates each change to Salesforce via the Salesforce provisioning API.
In additional to desktop browsers, PingIdentity provides SSO functionality for mobile device browsers and the Salesforce Outlook plugin. It works whether users are already logged into their corporate network or not. And it even works for emailed report URLs – if a user already has a Salesforce session established and receives an email containing a Salesforce link, clicking the link takes the user directly to his or her destination without any further authentication.
Ping Identity designed PingFederate and PingConnect to work with existing directory and user authentication mechanisms. As a result, administrators do not need to maintain an additional directory, and users do not need to login again to use Salesforce. PingFederate Integration Kits expedite integration with existing identity infrastructure and are available for: access management systems including CA SiteMinder and Oracle Access Manager; custom applications written in Java, .Net and PHP; Integrated Windows Authentication (IWA) and NTLM; and LDAP.
PingFederate can literally be deployed in days, helping IT can keep up with aggressive Salesforce deployment schedules. PingFederate for Salesforce deploys in three steps:

Download PingFederate and request a free evaluation license key. You'll be up and running with PingFederate in just a few hours, and you can see for yourself how PingFederate puts an end to logging in again.