Passly
Passly is a cloud IAM service for SSO, MFA, and enterprise password management targeted at MSPs/SMBs. It supports OpenID Connect/OAuth 2.0 and SAML 2.0 for app SSO, provides MFA (including Windows logon and RDP via agent), and includes shared password vaults.
Key Capabilities
-
Standards-based SSO: Guides for adding OpenID Connect clients/agents and SAML 2.0 apps; vendor collateral explicitly lists SAML 2.0 and OIDC support.
-
MFA coverage: Policy-driven MFA, including Windows login/RDP enforcement via Passly’s agent; integrations for Kaseya VSA and other tools.
-
Password management: Organization/shared vaults with access controls and audit; “Password Server / Vault Manager” admin workflows documented.
-
Provisioning policies: Built-in onboarding flows (Default/Full Onboarding) to control how new users are created in Passly.
Limitations / Trade-offs
-
End of life: Kaseya’s notice states Passly will be retired and unavailable after December 31, 2025.
-
SCIM specifics: Public docs describe onboarding/provisioning policies, but there’s not enough public information to confirm general-purpose SCIM 2.0 provider/consumer endpoints
-
Advanced OAuth profiles: Materials focus on core OIDC/OAuth; not enough public information to confirm PAR, DPoP, or mTLS-bound tokens.
-
SaaS + agents operations: Windows/RDP MFA and some integrations rely on agents and internet connectivity.