Try our new research platform with insights from 80,000+ expert users

ForgeRock vs Microsoft Entra External ID comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 27, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.2
ForgeRock enhanced market efficiency, security, and customer trust, reducing staffing needs and improving time to market without exact ROI figures.
Sentiment score
4.0
Organizations saved time and costs with Microsoft Entra External ID, despite varied productivity impacts and integration learning curves.
On a B2B level, it opened up the market for TomTom to sell its services in a more efficient way to car companies.
Principal Consultant at Road2Value
We can use a Linux image from ForgeRock with different systems, applications, websites, and mobile apps to create various types of access for users.
Assistant Architect at a energy/utilities company with 501-1,000 employees
I can definitely see that fewer employees are needed compared to using different SaaS applications.
Identity and Access Management Specialist at a university with 10,001+ employees
It has led to cost savings as well as time savings because I can use a single solution for all applications.
Associate Director Automation at Dubai Holding
Companies can leverage it for setting up external identities without needing to develop their own solutions.
Lead Enterprise Architect at DigyCorp
In terms of return on investment, prior to using this product, our company managed our own mail server with all internal authentication happening on premises, resulting in a ROI in the thousands every year.
Network Security Administrator at a retailer with 51-200 employees
 

Customer Service

Sentiment score
5.8
ForgeRock customer service is flexible and responsive, but improvements are needed for professional services and ticket resolution speed.
Sentiment score
4.9
Microsoft Entra External ID support experiences are mixed, with praise for knowledgeable staff but concerns about continuity and accessibility.
The support portals offer comprehensive documentation, troubleshooting guides, and community forums that have been helpful for resolving common issues independently.
Software Engineer at a financial services firm with 10,001+ employees
For standard support tickets, response times were very decent, and the support team was helpful in identifying configuration issues, especially with authentication trees, token settings, and directory replications.
Identity and Access Management Specialist at a university with 10,001+ employees
The customer support is very flexible and supportive, particularly in the area of automation and customer deployments.
Cybersecurity Consultant at CyberBackbone
Companies without a Microsoft license for Entra ID or Azure portal cannot add Azure AD B2C, creating logistical issues for some of my clients who are unable to evaluate the platform.
Consultant at Artifield
The support for business applications, infrastructure support, and Entra has been mostly positive with highly skilled technicians.
Sales Manager - Program Manger at Altitudo srl
The documentation is very thorough, reducing the need for support.
Cloud Security Consultant at a manufacturing company with 10,001+ employees
 

Scalability Issues

Sentiment score
7.3
ForgeRock offers scalable solutions for diverse enterprises, supporting seamless expansion, efficient administration, and integration across multiple environments.
Sentiment score
6.2
Microsoft Entra External ID offers scalability and flexibility but faces latency issues and lacks some authentication methods.
The access management layer is stateless, so I can scale horizontally by adding more nodes behind a load balancer as traffic increases.
Identity and Access Management Specialist at a university with 10,001+ employees
The platform provides flexible authentication trees, enabling us to design custom MFA flows tailored for different user groups and risk profiles.
Software Engineer at a financial services firm with 10,001+ employees
We scaled up with ForgeRock. My team received an award for implementing it for a 60 million customer base, which was the largest implementation at that time.
Principal Consultant at Road2Value
This is one of EID's weak points compared to Azure AD B2C, which offers customizable authentication options, including attribute and password combinations.
Consultant at Artifield
End-user workloads experience increased latency in a cloud environment compared to on-premises resources.
Director at iicon ltd
Microsoft Entra External ID is quite scalable, and I would rate its scalability between eight and nine out of ten.
Lead Enterprise Architect at DigyCorp
 

Stability Issues

Sentiment score
7.3
ForgeRock is stable and reliable, though customization affects stability, with users rating it seven to nine out of ten.
Sentiment score
5.2
Microsoft Entra External ID is a stable SaaS, rated 8-10/10, with minimal downtime, reliable except for occasional external issues.
ForgeRock supports integration with legacy systems in our organization by offering a wide range of connectors and APIs.
Software Engineer at a financial services firm with 10,001+ employees
ForgeRock is very stable because it manages access, authentication, and authorization effectively.
Assistant Architect at a energy/utilities company with 501-1,000 employees
I'd rate the stability of the Microsoft Entra External ID as a 10.
Director of Technology at a hospitality company with 51-200 employees
The stability of this solution is very good.
Associate Director Automation at Dubai Holding
I have not encountered any stability issues with Microsoft Entra External ID.
Lead Enterprise Architect at DigyCorp
 

Room For Improvement

ForgeRock users suggest improving documentation, UI, DevOps support, onboarding, and training for better customization and admin experience.
Microsoft Entra External ID needs cost reduction, faster sync, better security, improved SSO, UI, integration, support, and pricing clarity.
ForgeRock needs to focus on low-code, no-code solutions that allow for drag-and-drop functionality with good orchestration.
CIAM Engineer at a tech vendor with 10,001+ employees
It would be better if they were available for support whenever the customer needs it, especially during migration or go-live time periods.
IAM Solution Architect at a tech services company with 1-10 employees
The main area is complexity. ForgeRock is extremely flexible, but the learning curve can be steep.
Identity and Access Management Specialist at a university with 10,001+ employees
This is particularly challenging during enterprise agreement renewals, as it's difficult for customers to review costs leading to lengthy negotiations.
Sales Manager - Program Manger at Altitudo srl
Enhanced customizable login options and the ability to use attribute password logins are critical features that are required for Microsoft Entra External ID to gain dominance in the authentication market.
Consultant at Artifield
I would like to see a more detailed alert system that provides a summary of why alerts are generated, who is generating them, and the reasons behind it.
Cloud Security Consultant at a manufacturing company with 10,001+ employees
 

Setup Cost

ForgeRock offers flexible pricing with community and enterprise options, seen as fair, supporting various features and open-source choices.
Microsoft Entra External ID pricing varies, cost-effective for some, expensive for others, challenging cloud transition impacts evaluation.
The pricing, setup cost, and licensing are very straightforward, which is a good success.
Cybersecurity Consultant at CyberBackbone
One has to spend considerable time trying to understand the different modules and different needs for those modules on the licensing front.
Principal Consultant at Road2Value
Regarding pricing, the cost seems high for single sign-on, especially for external applications like Oracle.
Associate Director Automation at Dubai Holding
Microsoft's pricing is complex and difficult to fathom due to a range of different licensing options.
Director at iicon ltd
The cost can be a factor for Microsoft Entra External ID, but in general, it offers a scalable and efficient solution compared to deploying individual solutions.
Lead Enterprise Architect at DigyCorp
 

Valuable Features

ForgeRock offers flexible authentication, scalability, and DevOps support with strong API integration, enhancing security and operational efficiency.
Microsoft Entra External ID enhances security and efficiency by simplifying identity management and integration without on-premises infrastructure.
Centralized management makes the biggest difference because it allows us to define, update, and enforce security and compliance rules from a single location.
Software Engineer at a financial services firm with 10,001+ employees
ForgeRock positively impacts our organization as we manage a large number of users with ease, providing a standard IAM solution that simplifies our processes.
CIAM Engineer at a tech vendor with 10,001+ employees
ForgeRock has positively impacted my organization by allowing us to migrate from the older system to the newer ForgeRock component, enabling us to go live with many products across geographies, enhancing security as it is all cloud-based, and with the company taking care of availability, it has reduced costs for the company.
IAM CONSULTANT at a tech services company with 10,001+ employees
It is crucial for hybrid environments, especially for integrating existing on-site infrastructures with cloud-based Active Directory, such as in Office 365 implementations.
Director at iicon ltd
EID unifies workforce users with external business partners, which is a very strong feature.
Consultant at Artifield
The detailed monitoring and reporting in Microsoft Entra External ID support compliance efforts effectively.
Manager, Identity & Access Management at a financial services firm with 10,001+ employees
 

Categories and Ranking

ForgeRock
Ranking in Customer Identity and Access Management (CIAM)
4th
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
38
Ranking in other categories
Identity Management (IM) (5th), Access Management (7th)
Microsoft Entra External ID
Ranking in Customer Identity and Access Management (CIAM)
5th
Average Rating
7.8
Reviews Sentiment
5.7
Number of Reviews
17
Ranking in other categories
Identity and Access Management as a Service (IDaaS) (IAMaaS) (9th), Microsoft Security Suite (17th)
 

Mindshare comparison

As of March 2026, in the Customer Identity and Access Management (CIAM) category, the mindshare of ForgeRock is 8.1%, down from 11.6% compared to the previous year. The mindshare of Microsoft Entra External ID is 5.0%, down from 6.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Customer Identity and Access Management (CIAM) Mindshare Distribution
ProductMindshare (%)
ForgeRock8.1%
Microsoft Entra External ID5.0%
Other86.9%
Customer Identity and Access Management (CIAM)
 

Featured Reviews

SR
Software Engineer at a financial services firm with 10,001+ employees
Centralized access control has improved secure onboarding and supports strict compliance
I wish we had used ForgeRock's adaptive risk-based authentication, which allows dynamic adjustment of authentication requirements based on user behavior. This could have helped us further strengthen our security. Another hidden gem is the built-in support for custom authentication modules and scripting, which gives a great deal of flexibility to tailor authentication flows. The self-service capabilities for password resets and account recovery have been very helpful in reducing support overhead and improving user experience. Discovering and utilizing these features would have definitely made our integration even smoother and would have provided additional value for both our users and our security team. One area of improvement would be the user interface for policy and workflow configuration, which can become complex and sometimes unintuitive, especially for new administrators. A more streamlined and user-friendly UI would help reduce the learning curve. Enhanced out-of-the-box analytics and reporting would also be valuable, as our current options often require custom development or integration with external tools. While extensibility is a strength, documentation for advanced customizations and integrations could be more comprehensive and easier to follow. Improved support for seamless upgrades and backward compatibility would also help minimize downtime. In terms of performance, optimizing the platform for high concurrency environments would be beneficial, especially for organizations with large user bases or peak usage periods. Enhanced scalability features such as more granular or horizontal scaling options would provide better support for distributed deployments. For integrations, having more pre-built connectors and easy integration with modern cloud-native services would accelerate adoption. Improved monitoring and real-time health dashboards would help proactively identify and resolve performance bottlenecks.
FS
Consultant at Artifield
Offers strong identity unification but needs better customization
Microsoft Entra External ID can be improved with additional features, specifically customizable flexibility and a customizable user interface for the login dialog. Currently, the login dialog has very limited customization options, which only include font styles, colors, text messages, or brand icons. Last month, Entra ID introduced some customizable features in their login dialog, but this does not apply to Microsoft Entra External ID, indicating a significant gap between the two. In theory, Entra External ID can support many external identity providers where custom login dialogs could be integrated, potentially via SSO feature coordination, although I have not yet confirmed this. Hence, enhanced customizable login options and the ability to use attribute password logins are critical features that are required for Microsoft Entra External ID to gain dominance in the authentication market.
report
Use our free recommendation engine to learn which Customer Identity and Access Management (CIAM) solutions are best for your needs.
884,873 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
20%
Manufacturing Company
8%
Computer Software Company
7%
Insurance Company
6%
Computer Software Company
13%
Financial Services Firm
11%
Manufacturing Company
10%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise5
Large Enterprise18
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise2
Large Enterprise6
 

Questions from the Community

What is your experience regarding pricing and costs for ForgeRock?
The pricing, setup cost, and licensing are very straightforward, which is a good success. I appreciate that it is very straightforward and helpful.
What needs improvement with ForgeRock?
I wish the JavaScript part could be improved, as not everyone is proficient in JavaScript, so automating that or reducing the reliance on it could be beneficial. Additionally, having only one realm...
What is your primary use case for ForgeRock?
My main use case for ForgeRock is designing user journeys, specifically customer user journeys, and how they interact with the system. A specific example of a user journey I designed using ForgeRoc...
What is your experience regarding pricing and costs for Microsoft Entra External ID?
Microsoft is flexible in the pricing for the product, so I cannot say that it is expensive, but definitely they are flexible in the price lists and their ways of doing payments.
What needs improvement with Microsoft Entra External ID?
Not really at the moment, but perhaps when we go deeper into using Microsoft Entra External ID, we may experience some things we may not prefer. However, up to now, we have not encountered anything...
What is your primary use case for Microsoft Entra External ID?
When I say identity, I mean Microsoft Entra External ID. We have been using Microsoft Entra External ID since the beginning of 2022. I am using it as a client. The purposes for using Microsoft Entr...
 

Also Known As

ForgeRock Identity Platform, ForgeRock OpenIDM
Azure Active Directory External Identities
 

Overview

 

Sample Customers

Geico, Thomson Reuters, Salesforce, McKesson, Trinet, SKY, BNP Paribas, Deloitte, Capgemini, North Western University
Information Not Available
Find out what your peers are saying about ForgeRock vs. Microsoft Entra External ID and other solutions. Updated: March 2026.
884,873 professionals have used our research since 2012.