Inside Activate
Anywhere
Activate Anywhere Overview
5 min
activate anywhere is an integral component of the activate platform that enables secure external access, mobile optimization, and web based self service functions it serves as a trusted boundary between external users or applications and the internal activate environment purpose and capabilities activate anywhere provides secure remote access to activate from outside the corporate network seamless mobile browser authentication through oauth secure external proxy for activate apis internet accessible password reset portal for remote users mobile access and authentication while the activate portal supports both integrated windows authentication (iwa) and oauth based authentication , iwa is not suitable for external or mobile access scenarios because it relies on internal domain connectivity to address this, activate anywhere acts as a secure oauth boundary users authenticate through anywhere, which handles oauth token issuance and validation once authenticated, anywhere securely proxies the user’s session to the internal activate web site, maintaining single sign on without reauthentication prompts this model provides strong security while allowing a smooth user experience from mobile browsers and external networks api access activate anywhere also functions as a secure gateway for activate apis , allowing controlled and authenticated access from external systems without exposing the internal activate web server api access through anywhere includes oauth based authentication for external integrations request proxying to internal activate api endpoints end to end encryption using 256 bit aes transport security audit visibility for external requests passing through the anywhere layer this design allows external systems — such as mobile apps, connectors, or third party automation tools — to access activate’s apis safely while preserving the integrity of the internal environment secure password reset activate anywhere provides a secure, internet facing password reset portal for users without corporate network access through this portal, users can reset or change passwords remotely accept an acceptable use policy (aup) configure password recovery questions set an initial password during onboarding this enables secure self service for remote and hybrid workers while maintaining compliance with enterprise password policies architecture options activate anywhere can be deployed in two main configurations standalone server pros full isolation from the activate environment simplified perimeter and firewall management cons requires a dedicated server and ssl certificate slightly higher maintenance overhead side by side deployment (installed on the same server as activate) pros simplified setup and shared infrastructure reduced certificate management effort cons lower isolation between web and api layers increased impact radius in case of failure