QuickStart Your OpenIddict SSO Solution With AdminUI
Get an SSO solution up and running with OpenIddict and a Management UI (AdminUI) in less than an hour
Joe Harvey
- •
- Job Role
- Software Developer
Please consider the envrionment before printing
Modernising single sign-on to support multi-tenant SaaS growth with stronger authentication
Illumify provides a SaaS ERP platform for cannabis operations, operating in a tightly regulated environment with strong security and audit requirements. Its existing single sign-on solution, built on the popular, free, open-source OpenIddict, supported only username and password authentication and was approaching the limits of what it could safely and sustainably deliver.
As the platform grew, Illumify needed to introduce multi-factor authentication, support users operating across multiple companies(tenancy), and enrich access tokens with tenancy context. These changes had to be delivered without disrupting existing applications, breaking integrations, or forcing users through a redesigned login experience. Maintaining compatibility with the existing user database and preserving the current UX were non-negotiable constraints.
The goal was to strengthen security and flexibility while keeping operational risk low and avoiding widespread application change.
Rock Solid Knowledge proposed adopting its general-purpose SSO platform as the foundation for a modernised identity service, extending the existing OpenIddict-based approach rather than replacing it outright.
The solution was designed to be a drop-in replacement for the existing SSO, preserving existing application integrations and user workflows. By reusing Illumify’s current user database schema and styling, the platform delivered enhanced capabilities without introducing breaking changes or disrupting users.
Built on .NET 8 and OpenIddict 6, the architecture separates configuration, user identity, and authentication policy, allowing Illumify to evolve its security posture over time. Particular attention was paid to multi-tenancy, ensuring that tenancy and security account context could be consistently propagated to downstream applications through standards-based tokens.
The new SSO platform provided Illumify with a secure, extensible identity foundation aligned with its growth plans and regulatory requirements.
The guys at RSK delivered the SSO solution on time, and were always on hand if we had any questions post delivery
John Caccavaro Co-founder and CTO
Rock Solid Knowledge brought deep expertise in OAuth, OpenID Connect, and real-world identity delivery. Its experience building and supporting production SSO platforms reduced delivery risk and ensured the solution balanced security, usability, and maintainability.
By focusing on compatibility, standards, and long-term operability, Rock Solid Knowledge delivered a solution that Illumify’s team could confidently own and extend.