Skip to content

Sovereign identity for your organisation

Own Your Identity Platform

Run identity on infrastructure you choose. Keep control of your identity data. Connect employees, partners and customers to your applications with a platform you can operate and move as your infrastructure strategy evolves.

Self-hosted Β· OpenID Connect & OAuth Β· Supported by 4tecture

Your platform. Your infrastructure.

Under your operational control

  • OpenID Connect 1.0
  • OAuth 2.0
  • FAPI 2.0
  • FIDO2 / WebAuthn

FAPI 2.0 Security Profile: opt-in.

Choose where it runs

On premises
Private cloud
Public cloud
Deployment choices for the same ProAuth platform, with your choice of infrastructure provider.

Different environments. Your identity platform.

For internal systems, software products and digital services, keep identity aligned with the way your organisation operates.

Onboard businesses into your SaaS

Let customers use local accounts or their own identity provider. Build tenant configuration into your onboarding tools and keep a common integration in your application.

Explore B2B customer onboarding

Bring identity into your business applications

Connect business applications to a maintained identity platform. Combine enterprise federation and local accounts in one deployment, with control over integration and branding.

Explore business application identity

Run identity on infrastructure you choose

Deploy on premises, in a private cloud or with your chosen public-cloud provider. Keep control of identity data and plan hosting changes on a supported Kubernetes foundation.

Explore deployment control

Keep sign-in available offline

Run identity on site for applications that need local sign-in. Keep accounts and required services within the local environment.

Explore local and offline sign-in
Explore all scenarios and adoption guides

Sovereignty means keeping your choices.

Decide where the platform runs, retain control of its data and choose how it is operated. ProAuth gives those decisions a concrete technical foundation.

Choose where identity runs

Deploy ProAuth on your own infrastructure, in a private cloud or with your chosen public-cloud provider. Container delivery and Kubernetes tooling support a consistent deployment approach across those environments.

Review deployment requirements

Take your platform and data with you

Keep control of ProAuth configuration, user-store databases and encryption keys. When you change hosting providers, these form the basis of a planned platform move, with documented backup and recovery procedures.

See how platform data is preserved

Know who supports the product

4tecture develops ProAuth and provides product support. Basic support covers product defects; escalation packs and Enterprise support plans add configuration and integration assistance.

See support scope and response times

One identity platform for the applications you rely on.

Connect internal systems, workforce applications and customer-facing services through OpenID Connect and OAuth. ProAuth can use its own user stores or federate sign-in to existing providers such as Microsoft Entra ID.

Your applicationsInternal Β· partner Β· customer
OIDC / OAuth

Your ProAuth deployment

Sign-in Β· tenants Β· token issuance
ProAuth user storesSQL Server / Azure SQL or PostgreSQL
OIDC federation
Existing identity providersEntra ID Β· other OIDC providers
Architecture overview, not a request sequence. ProAuth acts as the identity provider for your applications and as an OIDC client of external providers. Applications and APIs remain responsible for token validation and application permissions.
Review protocols and integration

Need customer-specific login views, Claims Rule Engine, audit trails or SCIM provisioning? These are Enterprise features.

Compare ProAuth editions

For advanced API requirements, FAPI 2.0 is opt-in. DPoP and mTLS token binding require the corresponding client and API integration.

Explore security controls

What integration can look like

ProAuth customer projects inform these implementation patterns. Explore how teams make identity part of their product and operating model.

Meet 4tecture, the team behind ProAuth

Your platform. Clear responsibilities.

Evaluate one representative application and identity source. Decide where ProAuth runs, who operates it and how you retain control as requirements change.

  1. Map your environment

    Identify workforce, partner and customer applications, identity sources and required claims. Assess existing accounts, credential formats and MFA enrolments before planning a migration.

  2. Validate a working integration

    Configure a tenant, connect an application and test sign-in, permissions and recovery. Confirm the edition features and infrastructure your setup needs.

  3. Prepare to operate and evolve

    Assign monitoring, backups and upgrade testing. For a hosting move, plan the identity endpoint, certificates, dependencies and licence scope. Agree any managed operation separately.

Read the installation guide

Let’s plan your identity platform.

Tell us about your applications, identity sources and infrastructure plans. We can assess deployment options, editions and a suitable evaluation with you.