

ForgeRock and OneLogin both compete in the identity and access management arena, offering distinct strengths catering to enterprise environments. ForgeRock is perceived to have an upper hand in advanced customization and scalability, particularly benefiting large organizations, whereas OneLogin shines in user-friendliness with streamlined integration capabilities.
Features: ForgeRock is notable for extensive customization, scalability, and strong integration support. It supports risk-based authentication and policy configuration, proving highly flexible in DevOps automation. OneLogin excels with Single Sign-On, multiple Multi-Factor Authentication options, and effective user provisioning and integration with various applications, simplifying access and enhancing security.
Room for Improvement: ForgeRock users indicate a need for clearer documentation and user interface simplification. Challenges include a steep learning curve and desires for enhanced ForgeOps support. OneLogin requires better login customization, lifecycle management, and adaptive policies. Users note inconsistent support post-acquisition and occasional downtimes, suggesting more intuitive interface updates and expanded reporting capabilities.
Ease of Deployment and Customer Service: ForgeRock supports on-premises, hybrid, and public cloud deployments offering flexibility, but some users face complex deployment challenges. Its customer service gets mixed reviews, with some noting delays. OneLogin is optimized for public cloud environments, praised for seamless deployment but faces inconsistencies in support response times.
Pricing and ROI: ForgeRock's pricing is competitive but complex due to varying licensing options, offering high ROI for large-scale deployments demanding security and scalability. OneLogin, with straightforward pricing offering annual renewals, remains cost-effective for mid-sized enterprises. Despite price hikes, it is cheaper than alternatives, providing efficiency in identity management and cost savings.
On a B2B level, it opened up the market for TomTom to sell its services in a more efficient way to car companies.
We can use a Linux image from ForgeRock with different systems, applications, websites, and mobile apps to create various types of access for users.
I can definitely see that fewer employees are needed compared to using different SaaS applications.
Teams spend far less time on password issues, access requests, and onboarding, often cutting IT tickets by 30 to 50 percent.
We have been able to save 50% of our cost and time.
I notice strong ROI as it helps reduce help desk tickets, provides major time savings in user management, improves productivity with SSO, and provides better security overall, lowering operational costs and increasing efficiency.
The support portals offer comprehensive documentation, troubleshooting guides, and community forums that have been helpful for resolving common issues independently.
For standard support tickets, response times were very decent, and the support team was helpful in identifying configuration issues, especially with authentication trees, token settings, and directory replications.
The customer support is very flexible and supportive, particularly in the area of automation and customer deployments.
I would rate the customer support a 10.
I have contacted support on a few occasions, mainly for advanced configuration guidance, troubleshooting provisioning issues, and clarifying documentation for complex integrations.
Whenever we've had questions or needed help with setup, their team responded quickly and really guided us step by step.
The access management layer is stateless, so I can scale horizontally by adding more nodes behind a load balancer as traffic increases.
The platform provides flexible authentication trees, enabling us to design custom MFA flows tailored for different user groups and risk profiles.
We scaled up with ForgeRock. My team received an award for implementing it for a 60 million customer base, which was the largest implementation at that time.
Role-based access controls, automated provisioning, and directory integration scale smoothly, allowing me to maintain consistent policies and workflows even as complexity increases.
It has strong technical capabilities designed to be horizontally scalable, easily supporting a large user base without the need for manual infrastructure upgrades.
Since it is a cloud-based IAM platform, scaling is much easier compared to traditional systems.
ForgeRock supports integration with legacy systems in our organization by offering a wide range of connectors and APIs.
ForgeRock is very stable because it manages access, authentication, and authorization effectively.
Overall, OneLogin's stability gives me confidence that it can support my organization's current needs and scale as we grow.
There have been no major outages, and performance has been really consistent.
During the trial period, which was for thirty days, I never faced any downtime.
ForgeRock needs to focus on low-code, no-code solutions that allow for drag-and-drop functionality with good orchestration.
It would be better if they were available for support whenever the customer needs it, especially during migration or go-live time periods.
The main area is complexity. ForgeRock is extremely flexible, but the learning curve can be steep.
More real-time alerts, such as when access fails or MFA is triggered, would help users understand issues faster.
Step-by-step tutorials and troubleshooting guides would help users resolve issues faster without needing to contact support.
It is easy to implement and incorporate in any enterprise, and you can define the ROI pretty fast.
The pricing, setup cost, and licensing are very straightforward, which is a good success.
One has to spend considerable time trying to understand the different modules and different needs for those modules on the licensing front.
The cost is less compared to Okta and Entra ID.
Overall, the pricing, setup, and licensing structure are transparent and deliver a good return on investment, especially when considering the operational efficiency and security improvements gained from using OneLogin.
I consider the pricing of OneLogin to be competitive since it is cheaper than other products I used, such as Okta, which is beneficial for mid-size organizations.
Centralized management makes the biggest difference because it allows us to define, update, and enforce security and compliance rules from a single location.
ForgeRock positively impacts our organization as we manage a large number of users with ease, providing a standard IAM solution that simplifies our processes.
ForgeRock has positively impacted my organization by allowing us to migrate from the older system to the newer ForgeRock component, enabling us to go live with many products across geographies, enhancing security as it is all cloud-based, and with the company taking care of availability, it has reduced costs for the company.
Multi-Factor Authentication is generally useful for adding an extra layer of security, which is crucial, especially for the sensitive nature of the data we handle.
With SmartFactor Authentication, I can balance between them. I can give users an easy and smooth user experience as long as the risk indices are low, but I can implement pretty rigid authentication workflows if the risk gets higher.
OneLogin's best features are its MFA capabilities as well as making it easier to access different applications depending on the user.
| Product | Mindshare (%) |
|---|---|
| OneLogin | 1.9% |
| ForgeRock | 3.1% |
| Other | 95.0% |

| Company Size | Count |
|---|---|
| Small Business | 15 |
| Midsize Enterprise | 5 |
| Large Enterprise | 18 |
| Company Size | Count |
|---|---|
| Small Business | 91 |
| Midsize Enterprise | 25 |
| Large Enterprise | 46 |
ForgeRock offers robust integration, customization, and identity management with support for SAML, OAuth 2.0, and DevOps readiness, ensuring enhanced security and scalability.
ForgeRock stands out in identity and access management featuring flexible authentication flows, risk-based authentication, centralized policy management, and comprehensive data protection. Its open-source foundation and cloud capabilities allow versatility and ease of use. While it provides excellent user path orchestration through the Journey feature, challenges exist in integration support and user-friendly customization. Improved documentation and streamlined interfaces are necessary to overcome deployment complexities. Additionally, the cost and support model may be burdensome for smaller organizations.
What are the key features?ForgeRock is widely utilized in industries like telecommunications, insurance, and open banking for secure user authentication and access management. It supports microservice authentications, customer identity management, single sign-on, and multi-factor authentication, integrating effectively with existing infrastructures to enhance security and user experience.
OneLogin offers organizations a user-friendly platform for single sign-on, multifactor authentication, and seamless access management. It enhances security and streamlines processes, making it vital for application management.
Designed for ease of integration, OneLogin helps organizations efficiently manage access and improve cybersecurity through centralized application management. It simplifies onboarding and offboarding, enhancing remote work capabilities and offering robust user mapping. Users appreciate seamless integration and reliable logs. However, it could improve with enhanced technical support, more out-of-box connectors, and better customization options. Challenges with device management and system integrations have been noted, with legacy application support and infrastructure stability needing attention.
What are the key features of OneLogin?Organizations employ OneLogin for single sign-on and identity management, connecting users to applications like CRM and Slack. It supports role-based access control and seamless cloud transition, integrating with Active Directory to enhance user management in industries demanding strong security and efficiency.
We monitor all Identity Management (IM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.