Identity & Verification

Verify that access is happening where it should

Require users to access your application from an approved place, network, region or country.

Place definitions

Choose how a place is defined

A place on the map

Set a radius around a location such as an office, site or yard.

An approved Wi-Fi network

Require access through a specified office or site network.

An administrative region

Restrict access to a defined region.

A country

Require the connection to originate from the permitted country.

Combining rules

Combine location rules

A sign-in policy can use more than one way to define an approved location.

For example, an organisation can allow access from its office Wi-Fi or from within the defined site area.

the question
office_wifi OR site_radius ?
YES
Fail-safe

Verification fails when the requirement cannot be established

If a location-restricted sign-in cannot establish that the required location condition has been met, the sign-in is refused.

No silent pass

Location restrictions do not become optional simply because the phone cannot provide the required information.

Spoofing

Additional protection against spoofed location

Where appropriate, Sojaly can compare the phone's claimed location with the origin of its network connection.

A contradictory location claim can be refused.

Applications can also apply a policy that rejects VPN connections.

Add location verification to your application

Use Sojaly when your application needs identity and verification without having to build every verification service itself.