Try our new research platform with insights from 80,000+ expert users

Microsoft Entra ID vs WSO2 Identity Server comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra ID
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
266
Ranking in other categories
Single Sign-On (SSO) (1st), Authentication Systems (1st), Identity Management (IM) (2nd), Identity and Access Management as a Service (IDaaS) (IAMaaS) (1st), Access Management (1st), Microsoft Security Suite (2nd)
WSO2 Identity Server
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
11
Ranking in other categories
Customer Identity and Access Management (CIAM) (12th)
 

Mindshare comparison

While both are Identity and Access Management solutions, they serve different purposes. Microsoft Entra ID is designed for Single Sign-On (SSO) and holds a mindshare of 12.6%, down 26.7% compared to last year.
WSO2 Identity Server, on the other hand, focuses on Customer Identity and Access Management (CIAM), holds 2.2% mindshare, down 2.8% since last year.
Single Sign-On (SSO) Market Share Distribution
ProductMarket Share (%)
Microsoft Entra ID12.6%
Okta Platform8.5%
Auth0 Platform6.7%
Other72.2%
Single Sign-On (SSO)
Customer Identity and Access Management (CIAM) Market Share Distribution
ProductMarket Share (%)
WSO2 Identity Server2.2%
Auth0 Platform15.2%
Okta Platform13.9%
Other68.7%
Customer Identity and Access Management (CIAM)
 

Featured Reviews

JP
Senior Information Security Engineer at a financial services firm with 1,001-5,000 employees
Implementing seamless integration boosts secure access and supports Zero Trust
What I appreciate the most about Microsoft Entra ID is that it integrates seamlessly with all the Defender products and is easy to use. Microsoft Entra ID's integration capabilities influence our Zero Trust model by allowing us to enforce our Zero Trust model. Conditional access policies allow us to leverage Microsoft Entra ID to verify that devices signing in to our cloud services are coming from registered devices, and that people are passing all the other requirements we have in order to complete sign-on or conditional access policies. Since implementing Microsoft Entra ID, I've observed changes in the frequency and nature of identity-related security incidents. The organization already had it implemented when I arrived, and I've been working to enhance it. Better configuration of Microsoft Entra ID has allowed us to better protect our organization from threats. Having it alone isn't a solution, but ensuring proper configuration goes a long way in preventing future compromises. My company's approach to defending against token theft and nation-state attacks has evolved since implementing Microsoft Entra ID. We haven't experienced any known compromises from nation-state attacks, and implementing newer features gives me more confidence in our protection. Regarding device-bound passkeys in Microsoft Authenticator and our approach to phishing-resistant authentication, we are currently implementing Microsoft Entra ID certificate-based authentication. Adding a strong form of MFA is important as we found it to be the most cost-effective way. While other solutions might be equally or more secure, they are significantly more expensive. Having worked as an IT consultant mainly with the Microsoft stack across various industries, I have experience with different identity management solutions. Microsoft Entra ID remains the best option. The major advantages when comparing it to Okta include integration with Defender products, Defender for Identities' integration with conditional access policies, and insider threat management integration for blocking sign-ins based on risk factors. The enhancement of Microsoft Entra ID's implementation is relatively straightforward. My main concern is the occasional lack of documentation and the frequency of changes, which can make feature location challenging.
Ritesh_Shah - PeerSpot reviewer
Senior Solution Architect at Hewlett Packard Enterprise
Utilizing key management and seamless single sign-on integration for enhanced user profile management
WSO2 Identity Server's key management feature stands out as a particularly impactful feature for enhancing security. Additionally, from a user perspective, the self-user portal and user profile management capabilities are highly valuable. It allows users to manage their profiles, change passwords, and offers a self-care portal type of functionality. The single sign-on capability integrates seamlessly with various platforms, including Google, Facebook, LDAP, and Active Directory, which supports rapid product launches.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We need something that makes an attacker's life harder."
"Very stable and scalable IAM service with good SSO and authentication features."
"The most valuable feature is Conditional Access, and we use it extensively."
"My two preferred features are conditional access and privileged identity management."
"The single sign-on is very convenient for us."
"The identity and access management piece is probably the most valuable to us. Since its implementation, synchronizing the identities from on-premise to Entra ID has had a positive impact. This allows us to grant access to applications based on those users and the groups they belong to."
"All of the features are amazing, such as identity governance and privileged identity management."
"The scalability is good now, and I find it to be more stable and faster since scaling up to ESX."
"Comprehensive ecosystem."
"I am completely satisfied with WSO2 Identity Server and would definitely recommend it to other companies."
"The keystore feature has been most valuable for us."
"The product's initial setup phase is easy."
"The product provides easy integration between API manager and IT server components."
"It's very easy to implement everything."
"I would rate the solution's stability eight or nine out of ten."
"We use the solution for customer identity management, authenticating customers coming in through a web portal."
 

Cons

"Azure AD does not support legacy authentication protocols, such as NTLM or Kerberos."
"Over the past year, syncs have occasionally taken longer than expected to complete between on-premises and cloud environments."
"The quality of support has declined in recent years."
"The downside is that we now have all our eggs in one basket with Microsoft. We have this great authentication and single sign-on, but if Microsoft has an outage in North America or globally, on Outlook or Teams, we're dead in the water... We get some type of hiccup once a quarter."
"The area that needs improvement is integrating IDs between multiple environments and forests. In our case, it's hard to get the identities from multiple forests into one location."
"One challenge with Entra ID is its complexity, stemming from integrating many components into a single solution."
"One thing that bothers me about Azure AD is that I can't specify login hours. I have to use an on-premises instance of Active Directory if I want to specify the hours during which a user can log in. For example, if I want to restrict login to only be possible during working hours, to prevent overtime payments or to prevent lawsuits, I can't do this using only Azure AD."
"I would like to see some additional attributes for user objects in Microsoft Entra, especially for tasks such as users and account validation, including guest users and guest accounts."
"Sometimes working with the code is difficult because I search for documentation about the code and how to work with the code, which is where I believe they should improve, by providing some documentation on how to work with the code."
"The high availability architecture has to be improved."
"The solution could improve its development from a user perspective."
"This solution does not have BPM workflows already integrated, we had to integrate the BPM module externally. They do not provide full-featured auditing and certification modules out of the box."
"I found the initial setup to be very complex."
"The solution seems to be pretty outdated."
"The solution's licensing model could be more flexible, and pricing could be improved."
"The price of the product is an area of concern where improvements are required."
 

Pricing and Cost Advice

"I don't pay for it. Going by how I feel, I see the prices for any MFA solution going down because the more different alternatives there are, the cheaper things should be. Microsoft Authenticator app would be the preferred application, but there are too many ways to implement MFA. I don't know how much it cost, but the price should go down."
"I am not involved in the pricing or licensing, so I can't speak to that."
"The subscription should be categorized by business size. For example, small companies should have a discounted price, this would help small companies and the organization to be automated."
"Its price is per user. It is also based on the type of user that you're synchronizing up there."
"The price is affordable, and we pay around $100 per month."
"The pricing depends on the use case and can be negotiated based on volume."
"It's pretty good. We're using the native features. It's bundled with our Office 365 licenses. We aren't paying anything extra for Azure Active Directory. It's pretty good for us because it's complementary to Office 365. We're only paying for Office 365."
"Azure AD's pricing is comprehensive and affordable. The prices are easy to understand, and the licenses include a variety of security monitoring and additional features."
"At this time we are working with the open-source version."
"They should bring in some good pricing models to host the marketplace."
"We have to take their support, but that is a minimal charge if I'm comparing it to other identity managers."
"I have found the solutions license is priced competitively compared to others."
"WSO2 Identity Server is not an expensive solution."
"I rate the product price an eight out of ten. There is a need to pay more for the extra features provided by the solution."
report
Use our free recommendation engine to learn which Single Sign-On (SSO) solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
10%
Manufacturing Company
9%
Government
8%
Financial Services Firm
10%
Transportation Company
10%
Comms Service Provider
9%
Media Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business85
Midsize Enterprise38
Large Enterprise155
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise2
Large Enterprise5
 

Questions from the Community

How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Duo for 30 days, and we could not be happier. Duo Security is easy to configure a...
What is your experience regarding pricing and costs for Azure Active Directory?
My experience with the pricing, setup costs, and licensing of Microsoft Entra ID is that it is decent.
What needs improvement with Azure Active Directory?
I think Microsoft Entra ID could be improved by assigning permissions to nested groups in the next release.
What is your experience regarding pricing and costs for WSO2 Identity Server?
The pricing is currently the same as the API Manager, so it's not surprising. Since we used it primarily for SSO and the self portal, there were no additional pricing concerns.
What needs improvement with WSO2 Identity Server?
Currently, all required features are supported. If new use cases for artificial intelligence arise, it could be beneficial to incorporate those. However, for our current projects, WSO2 Identity Ser...
What is your primary use case for WSO2 Identity Server?
We deployed WSO2 Identity Server to fulfill our single sign-on (SSO) requirements. Whenever we implement the API Manager, instead of using the API Manager's inbuilt key manager, we use WSO2 Identit...
 

Also Known As

Azure AD, Azure Active Directory, Azure Active Directory, Microsoft Authenticator
No data available
 

Interactive Demo

Demo not available
 

Overview

 

Sample Customers

Microsoft Entre ID is trusted by companies of all sizes and industries including Walmart, Zscaler, Uniper, Amtrak, monday.com, and more.
Nutanix, ELM, AlmavivA, BDigital, StubHub, M-creations, MedVision360
Find out what your peers are saying about Microsoft Entra ID vs. WSO2 Identity Server and other solutions. Updated: March 2020.
881,082 professionals have used our research since 2012.