Feature / Authentication

Authentication comes built into Tactna.

Tactna builds in Auth0 or Amazon Cognito as its authentication platform. Choose the one that fits your security standards, and the authentication layer comes ready inside Tactna while Tactna's specialist team migrates existing users. Nothing changes for users, and there is almost no work on your side.

  • Choose Auth0 or Cognito
  • Our specialist team migrates
  • One ID for the apps they need
User

One ID to log in

Tactna

Unified management of users, teams & access

Authentication

Auth0

or

Cognito
  • App 1

    SAML

  • App 2

    OIDC

  • App 3

    OIDC

SAML / OIDC

Problem

As many IDs and passwords as there are apps.

The rep gets the chores; the manufacturer loses the opportunity.

Ordering, price lists, warranty. Every new app brought its own login and user management, so a distributor rep holds a different ID and password per app. Passwords get reused, and IDs are forgotten when people leave.

The manufacturer loses too. With a different login screen and ID for every app, your service never feels like one experience. Who uses which app is only visible app by app, so there is no starting point for upsell or cross-sell, such as offering pricing or warranty to a rep who only uses ordering.

Registering distributor reps as employees in the corporate identity provider isn't the answer either: headcount billing piles up, and internal control rules get applied to outsiders. Neither was designed for people outside the company.

What happens per app, for one distributor rep

App AApp BApp CPer rep
On joiningIssueIssueIssueThree accounts to create
Every dayAnother passwordAnother passwordAnother passwordThree to remember, so they get reused
When forgottenResetResetResetThree places to ask
On transferChange accessChange accessChange accessThree places to fix
On leavingDeletedDeletedLeft openThree deletions, one forgotten

What happens on the manufacturer side

  • A different experience per app

    A separate login screen and ID for every app. To the distributor it never looks like one service from you.

  • No single view of who uses what

    User lists are split per app, so there is no starting point to offer pricing or warranty to a rep who only uses ordering. Upsell and cross-sell never happen.

  • Every new app adds another ID

    Each new app means rebuilding user management and handing distributors yet another ID.

Mechanism

Authentication inside Tactna. Management in one place.

Tactna doesn't keep authentication outside. It builds in Auth0 or Cognito and manages users, teams, and access on top of it. Rollout takes three steps: Tactna provides the authentication layer, and our specialist team migrates.

  1. Authentication providerStep 1 of 3

    Choose the identity platform Tactna will run on. Features are identical either way.

    Auth0Managed by Tactna · MFA · SAML / OIDC
    Amazon CognitoManaged by Tactna · MFA · SAML / OIDC
    iYour security standards, current operations, and cost decide the choice. Tactna provides it either way; our specialist team migrates.
    BackContinue
    01Manufacturer

    Choose Auth0 or Cognito

    Based on your security standards, current operations, and cost, choose Auth0 or Amazon Cognito as the authentication platform built into Tactna. Tactna's features are the same either way.

  2. MigrationRun by Tactna team
    Source: existing Auth0 tenantTarget: Tactna (Auth0)
    • Users migrated3,842 / 3,842
    • Teams mapped128
    • Applications connected (SAML / OIDC)4
    • Login experienceUnchanged
    iOther apps on the existing tenant are not affected.
    View reportComplete
    02Tactna

    Tactna provides it, our team migrates

    The authentication layer comes built into Tactna. Even if apps already run on Auth0 or Cognito, Tactna's specialist team migrates all existing users. Nothing changes for users.

  3. Ttanaka@acme-sales.exampleSigned in
    Ordering system›
    Price list›
    Warranty portal›
    03Distributor rep

    One ID, every app they need

    A distributor rep logs in with one ID and goes straight into the apps they're allowed. Tactna manages who is on which team with access to what, and apps only connect to Tactna, with no user management of their own.

Architecture

One entrance, Tactna. Beyond it, the apps they need.

Tactna sits in the centre. Inside it, Auth0 or Cognito handles login. Tactna holds users, teams, and per-app access, and passes that to the connected apps. Apps simply connect to Tactna over SAML or OIDC.

A distributor with its own identity provider can single sign-on to Tactna with that ID.

ComingConnectors for Google sign-in, other IDaaS, and your in-house authentication are planned, so they can be tied to the main authentication platform and managed together.

Distributor rep

Use Tactna
to access each service

External partners

Authentication(sign-in methods)

Distributor's own IdP

SSO(SAML / OIDC)

Google, in-house auth

connecting later

Distributor reps sign in to Tactna using
their own identity provider or Google.

Federation
Tactna

One identity platform across your digital services

Unified user, team & access management

  • User management

    Invite, update, remove

  • Applications

    Access by team

  • Team management

    Multiple team memberships

  • Policy management

    Auto-lock & restrictions

  • Access control

    Roles & access control

  • Activity Log

    Usage visibility

Authentication & login (connected by Tactna)

  • Auth0
  • Cognito

Choose either; our specialists handle migration

Connected apps (no separate user management)

  • App 1

    SAML

  • App 2

    OIDC

  • App 3

    OIDC

  • App 4

    SAML

Users authenticated and authorized by Tactna
can access each application seamlessly.

Features

Choose, migrate, then one ID.

  • Choice of Auth0 or Cognito

    Choose the authentication platform built into Tactna to fit your security standards and operations.

  • Migration of existing users

    Tactna's specialist team migrates users from your existing Auth0 / Cognito and from each app into the authentication layer built into Tactna.

  • One ID to log in

    A distributor rep reaches every app they're allowed with one ID.

  • SAML / OIDC

    Apps connect to Tactna over SAML or OIDC. No user management to build on the app side.

  • SSO with the distributor's IdP

    Distributors with their own IdP can log in with that ID.

  • IP restrictions

    Restrict use by source IP address.

  • MAU billing for external users

    External users are billed by monthly active users, not headcount. You don't pay for people who don't use it.

  • Authentication log

    Logins are kept as an authentication log you can use in audits.

Impact

Tactna provides it. You keep one.

MetricBeforeAfter
Authentication build work on your sidePer appAlmost none (Tactna provides it; our specialist team migrates)
IDs each distributor rep holdsOne per appone
User-management work per new appRebuilt every timeNot needed (60% less expected)
Billing for external usersHeadcountMAU

Case study

KITZ connected its OutSystems-built distributor app to Tactna and linked user creation and deletion. The effort of building user management for each new app is expected to fall by 60%.

Read the case study

FAQ

Frequently asked questions

We already use Auth0 (or Cognito). Can we keep using it as is?

Not as is. A new authentication layer is set up inside Tactna and existing users are migrated. Tactna provides the layer and our specialist team migrates, so there is almost no work on your side and nothing changes for users. Other apps on your existing platform are unaffected.

We use Okta internally. Does this compete with it?

No. Tactna's core is user management, and authentication is handled by the built-in Auth0 / Cognito. The usual setup is Okta for employees and Tactna for distributors and partners, side by side.

What if a distributor has its own identity provider?

Connect it over SAML / OIDC and reps log in to Tactna with the distributor's ID.

Can it connect to Google sign-in or our in-house authentication?

Today Tactna builds in Auth0 and Cognito. Connectors for other identity providers are on the roadmap. Contact us for timing.

What about security standards?

The company behind Tactna is certified to ISO 27001 / 27017. SSO, IP restrictions, and the authentication log are standard on every plan.

Leave authentication to Tactna.

Tell us about your current authentication setup and apps. We'll propose whether Auth0 or Cognito fits, with concrete migration steps and timing.