You can configure PingFederate to authenticate users through the following identity provider (IdP) adapters or token processors.
|Adapter or Token Processor
|PingFederate integrated Kerberos Adapter
|Using the built-in Kerberos Adapter with a configured AD domain allows a PingFederate identity provider (IdP) server to perform single sign-on (SSO) to service provider (SP) applications based on Kerberos tickets.
|PingFederate integrated Kerberos Token Processor
|The built-in Kerberos Token Processor accepts and validates Kerberos tokens through a configured Kerberos Realm from a web service client.
|Integrated Windows Authentication (IWA) Integration Kit (version 3.0 and later)
|Using the separately available IWA Adapter with a configured AD domain allows a PingFederate IdP server to perform SSO to SP applications based on IWA credentials.