Skip to content
Cybersecurity OpenText

OpenText NetIQ

OpenText NetIQ: Identity and Access Management (IAM) platform. Access Manager, Identity Governance, Privileged Access, Advanced Authentication. Enterprise identity management.

Sales Representative
Grzegorz Gnych

Grzegorz Gnych

Sales Representative

Key Features

  • Access Manager - SSO, federation, web access management
  • Identity Governance - access certification, compliance
  • Privileged Access Manager - privileged account control
  • Advanced Authentication - MFA, biometrics, risk-based
  • Identity Manager - provisioning, lifecycle management
Available now
Grzegorz Gnych

Grzegorz Gnych

Sales Representative

Send inquiry
Table of Contents

What is OpenText NetIQ?

OpenText NetIQ (formerly Micro Focus NetIQ) is an Identity and Access Management (IAM) platform - a comprehensive solution for managing identities, access, and permissions in an organization. From SSO through MFA to governance and PAM.

Main components:

  • Access Manager - Single Sign-On, federation, web access
  • Identity Governance - access certification, compliance, SoD
  • Privileged Access Manager - admin account control
  • Advanced Authentication - MFA, biometrics, adaptive
  • Identity Manager - provisioning, lifecycle

What problem does it solve?

flowchart LR
    subgraph Without IAM
        A[User remembers 20 passwords] --> B[Passwords on sticky notes]
        B --> C[No MFA]
        C --> D[Breach]
    end

    subgraph With NetIQ
        E[Single SSO login] --> F[MFA everywhere]
        F --> G[Governance]
        G --> H[Security]
    end

    style A fill:#dc2626,stroke:#b91c1c,color:#fff
    style B fill:#dc2626,stroke:#b91c1c,color:#fff
    style C fill:#dc2626,stroke:#b91c1c,color:#fff
    style D fill:#dc2626,stroke:#b91c1c,color:#fff
    style E fill:#22c55e,stroke:#16a34a,color:#fff
    style F fill:#22c55e,stroke:#16a34a,color:#fff
    style G fill:#22c55e,stroke:#16a34a,color:#fff
    style H fill:#22c55e,stroke:#16a34a,color:#fff

Common problems:

  • Users have dozens of accounts and passwords
  • No central SSO - each application separately
  • MFA only selectively or not at all
  • Audit: “Who has access to what?” - no answer
  • Privileged accounts without control

NetIQ Components

Access Manager

SSO and Web Access

  • Single Sign-On (SSO)
  • SAML, OAuth, OIDC federation
  • Web Access Management
  • API Gateway security

Identity Governance

Compliance and certification

  • Access certification campaigns
  • Segregation of Duties (SoD)
  • Access request workflows
  • Compliance reporting

Privileged Access Manager

PAM - admin accounts

  • Password vault
  • Session recording
  • Just-in-time access
  • Credential rotation

Advanced Authentication

MFA and biometrics

  • Multi-factor authentication
  • Biometrics (fingerprint, face)
  • FIDO2 / WebAuthn
  • Risk-based / adaptive MFA

Identity Manager

Provisioning

  • Automated provisioning
  • HR-driven lifecycle
  • Role-based access
  • Self-service portal

Data Access Governance

Data access

  • File share permissions
  • Unstructured data access
  • Data owner workflows
  • Access analytics

Architecture

flowchart TD
    A[User] --> B[Access Manager]
    B --> C{Authentication}
    C --> D[Advanced Authentication]
    D --> E[MFA Challenge]
    E --> F{Authorized?}
    F -->|Yes| G[Applications]
    F -->|No| H[Denied]

    I[Identity Manager] --> J[Provisioning]
    J --> G

    K[Identity Governance] --> L[Certification]
    L --> M[Access Reviews]

    style A fill:#6366f1,stroke:#4f46e5,color:#fff
    style B fill:#8b5cf6,stroke:#7c3aed,color:#fff
    style D fill:#f59e0b,stroke:#d97706,color:#fff
    style F fill:#f59e0b,stroke:#d97706,color:#fff
    style G fill:#22c55e,stroke:#16a34a,color:#fff
    style H fill:#dc2626,stroke:#b91c1c,color:#fff

Access Manager - SSO

Single Sign-On for all applications:

ProtocolUse case
SAML 2.0Enterprise apps, cloud SaaS
OAuth 2.0API authorization
OpenID ConnectModern web/mobile apps
KerberosWindows domain apps
Header-basedLegacy web apps
flowchart LR
    A[User] --> B[Access Manager]
    B --> C[App 1 - SAML]
    B --> D[App 2 - OIDC]
    B --> E[App 3 - Header]
    B --> F[API - OAuth]

    style A fill:#6366f1,stroke:#4f46e5,color:#fff
    style B fill:#f59e0b,stroke:#d97706,color:#fff
    style C fill:#22c55e,stroke:#16a34a,color:#fff
    style D fill:#22c55e,stroke:#16a34a,color:#fff
    style E fill:#22c55e,stroke:#16a34a,color:#fff
    style F fill:#22c55e,stroke:#16a34a,color:#fff

Advanced Authentication - MFA

Authentication methods:

Something you know

Password, PIN, Security questions

Something you have

TOTP, Push, SMS, Hardware token, Smart card

Something you are

Fingerprint, Face, Voice, Iris

Risk-based

Location, Device, Behavior, Time

Who is it for?

NetIQ MAKES sense when:

  • You have 500+ users and many applications
  • You need SSO for hybrid (on-prem + cloud)
  • Compliance requires MFA and access certification
  • You have legacy apps without native federation
  • You need PAM for administrators

NetIQ DOESN'T make sense when:

  • Small company - Azure AD / Okta may suffice
  • 100% cloud - native cloud IAM simpler
  • Only MFA - standalone MFA cheaper

NetIQ vs competition

AspectNetIQOktaMicrosoft EntraPing Identity
SSOYesYesYesYes
MFAAdvanced AuthYesYesYes
IGAIdentity GovernanceAdd-onBasicNo
PAMYesNoNoNo
On-premYesNoLimitedYes
Legacy appsHeader-basedLimitedLimitedYes
PriceCompetitivePremiumM365 includedPremium

NetIQ advantage:

  • Complete IAM portfolio in one place
  • On-premises option for regulated industries
  • Header-based SSO for legacy apps
  • PAM integrated with IAM

Specifications

ParameterValue
DeploymentOn-premises, SaaS, Hybrid
DirectoryAD, LDAP, eDirectory, Azure AD
ProtocolsSAML, OAuth, OIDC, Kerberos, RADIUS
MFA methodsTOTP, Push, SMS, Biometrics, FIDO2
Connectors200+ out-of-box
ComplianceSOX, HIPAA, PCI DSS, GDPR

FAQ

How does it differ from Azure AD? Azure AD is cloud-native IAM for Microsoft ecosystem. NetIQ is enterprise IAM for hybrid environments with strong support for legacy apps and on-prem.

Can I use only MFA? Yes. Advanced Authentication can work standalone or with Access Manager.

How does it work with Active Directory? NetIQ integrates with AD as a directory. Can extend AD with SSO, MFA, governance without replacement.

What about legacy applications? Access Manager supports header-based SSO for applications that don’t support SAML/OIDC natively.

How long does implementation take? Basic SSO: 2-4 weeks. Full IAM with governance: 3-6 months.

Does nFlo implement NetIQ? Yes. Access Manager, Advanced Authentication, Identity Governance deployments, application integrations.

Inquire about OpenText NetIQ

Contact your product specialist and get a custom quote.

Sales Representative
Grzegorz Gnych

Grzegorz Gnych

Sales Representative

Response within 24 hours
Free technical consultation
Custom quote and configuration

Providing your phone number will speed up contact.

Want to Reduce IT Risk and Costs?

Book a free consultation - we respond within 24h

Response in 24h Free quote No obligations

Or download free guide:

Download NIS2 Checklist