Have a question? Want to report an issue? Contact JFrog support

Skip to end of metadata
Go to start of metadata

Overview

Access Federation gives you control over access to all, or any subset of your global JFrog Artifactory, JFrog Xray, and JFrog Distribution instances from one location by synchronizing all security entities (users, groups, permissions and access tokens) between the federated instances. Once access federation has been set up, you can manage all security entities in the federated instances from one place. This opens up previously unavailable capabilities such as:

  • providing build servers connected to any federated instance with access to any of the other Artifactory instances in the federated group
  • providing globally distributed teams, CI servers or bots with access to any Artifactory instance within a federated group 

No proxy support before Artifactory 6.1

For Artifactory versions below 6.1, an Access service that resides behind a proxy cannot be included in a circle of trust and therefore, cannot be included in access federation. 

Access federation is available from Artifactory 6.0 and requires an Enterprise+ license.

HTTPS recommended

Since Access Federation data is relayed from a source to a target Access service in plain text, we strongly recommend using HTTPS for communication between two Access services. This can be achieved by configuring Artifactory and Access to work with a reverse proxy.

For NGINX, please refer to Using HTTP or HTTPS.

For Apache, please refer to Setting Up Apache HTTPS.

Visit the JFrog Access User Guide

For more information, showing sample topologies and full details on how to setup access federation, visit the Access Federation page in the JFrog Access User Guide.

Page Contents

 

  • No labels