Ensure digital operational capability with Nubus for Business Continuity – sovereign IAM in standby mode.

Learn more
Identity & Access Management · Open Source

Nubus - Central Identity
& Access Management

Nubus is Univention’s open source solution for Identity & Access Management (IAM) from Univention. It connects identities, access, and applications in a central structure and enables single sign-on as well as self-service through a unified portal.

Nubus Features
The Challenges

As Systems Grow, Complexity Grows with Them

With every new application, every additional system, and increasing requirements, managing identities and access rights becomes more complex. Many solutions address individual problems but create new dependencies and limitations.

01

Fragmented Identities & Lack of Visibility

Multiple systems, multiple directories, different data states. Identities and permissions are inconsistent and visibility is lost.
02

High Manual Effort in Operations

Onboarding, role changes, and offboarding require intervention in multiple systems. Processes remain error-prone, time-consuming, and difficult to scale.
03

Increasing Security and Compliance Requirements

GDPR, BSI IT Baseline Protection, and NIS2 increase the pressure for traceability and access control. Without centralized management, every audit becomes a major effort.
How Nubus Works

From Identity to Application, Everything in One Solution

Nubus connects identities, access, and applications in one central solution. Processes are automated, access is managed securely, and applications are provided through a central portal.

1
Administration
2
Sign In
3
Integrations
Step 1 of 3

All Identities. One Central Directory.

Users, groups, and roles are created and managed centrally. Nubus provides the consistent foundation for all access within your organization.

Users & Groups

Roles & Permissions

LDAP / UDM

Central Directory

Step 2 of 3

Sign In Securely. Access Easily.

Users authenticate centrally - with Single Sign-on (SSO) and optional Multi-Factor Authentication (MFA) for additional security.

SSO

MFA

OIDC

SAML

Step 3 of 3

All Applications. One Access Point.

Through the central portal, users access all approved applications: simply, securely, and without having to sign in again.

Central Portal

100+ Integrations

REST API / SCIM

Open Standards

View All Integrations Book a Demo
1
Administration
2
Sign In
3
Integrations
Step 1 of 3

All Identities. One Central Directory.

Users, groups, and roles are created and managed centrally. Nubus provides the consistent foundation for all access within your organization.

Users & Groups

Roles & Permissions

LDAP / UDM

Central Directory

1
Administration
2
Sign In
3
Integrations
Step 2 of 3

Sign In Securely. Access Easily.

Users authenticate centrally - with Single Sign-on (SSO) and optional Multi-Factor Authentication (MFA) for additional security.

SSO

MFA

OIDC

SAML

1
Administration
2
Sign In
3
Integrations
Step 3 of 3

All Applications. One Access Point.

Through the central portal, users access all approved applications: simply, securely, and without having to sign in again.

Central Portal

100+ Integrations

REST API / SCIM

Open Standards

View All Integrations Book a Demo
The Benefits

More Efficiency.
More Security.
More Independence.

Nubus reduces administrative effort in IT, increases the security of your identity management, and enables an independent, scalable IT architecture for modern organizations.

Automation
20 min.
saved per employee

Time Savings Through Automation

Onboarding, offboarding, and role changes are automated. Manual processes are eliminated, and IT teams gain time for strategic tasks.

Without Nubus
Min. / App
With Nubus
automatic
Centralization

Centralized Management of All Identities

All identities, groups, and rights are managed centrally and synchronized consistently across all systems.

Digital Sovereignty

No dependency. Full control.

No dependence on individual cloud providers. Identity data remains under your control: on-premises or in European infrastructures.

100% Open Source
On-premises No Lock-in EU-konform
Scalability

Scalable IT Architecture

Nubus grows with your organization from individual applications to complex, distributed IT landscapes.

Integrations

Applications speak the same language

Consistent user data for all integrated apps without isolated user management or media disruptions.

Compliance

Sicherheit & Compliance

GDPR, BSI IT Baseline Protection, and NIS2 are supported through centralized access control, auditability, and clear permission structures.

DSGVO BSI NIS2
Architecture & Operations

Open by Design.
Flexible to Operate.

Nubus integrates into existing IT landscapes and can be operated flexibly on-premises, in the cloud, or hybrid. Open standards and interfaces enable seamless integration of existing systems and applications.

Would you like to dive deeper into the technical architecture?

End users, administrators, and applications access Nubus centrally through standardized authentication and access interfaces.

Standards: SSO, OIDC, SAML, LDAP

Nubus combines all core functions for identity and access management in an integrated architecture.

Existing systems and applications are integrated through open interfaces and standards without dependency on individual vendors.

Nubus can be operated flexibly according to your requirements and your infrastructure.

Integrations

Integrates Seamlessly into Your System Landscape

Nubus connects applications, directory services, and existing systems through open standards and preconfigured integrations: securely, flexibly, and without additional complexity.

Open standards & protocols

OIDC
SAML 2.0
LDAP
REST API
SCIM
Kerberos
Selection of Pre-configured Applications

To the App Center

References

Proven in use.
Trustworthy in operation.

Nubus is in productive use in administration, education, and public sector organizations, in both small and large IT environments. Practical examples show how digital sovereignty and modern IT architectures can be successfully implemented.

ZenDiS / openDesk

Digital sovereignty for public administration
  • 100 %
    Open Source
  • BSI
    Compliant
  • K8s
    Native

1. Requirements

  • Integration of various open source components into a unified platform
  • Central IAM for distributed Kubernetes environments
  • SSO & compliance with BSI IT-Grundschutz

2. Solution

  • Nubus as a central identity platform
  • Single Sign-on
  • Standardized interfaces and integrations
  • Self-service and password management

3. Benefits

  • Digital sovereignty through open source
  • Extensible and interchangeable modules
  • Reduced administrative effort through automation
FAQ

Frequently Asked Questions About Nubus

Answers to the most important questions about Identity & Access Management with Nubus, from use cases and integration to operations and compliance.

Nubus is Univention’s open source solution for Identity & Access Management. It centrally manages all identities, groups, and access rights and connects applications through a unified login and open standards.

IAM refers to the centralized management of digital identities and access within an organization. It ensures that users see exactly the applications and data they need, securely, transparently, and based on rules.

Nubus is fully open source and independent of individual vendors. Unlike proprietary cloud solutions, you retain control over your identity data, avoid vendor lock-in, and can design your IT architecture flexibly.

Digital sovereignty means that you decide about your IT yourself, from infrastructure to data. Nubus enables this through open standards, transparent architecture, and operation in your own environment or with a service provider of your choice.

Nubus supports operation in compliance with GDPR and BSI IT Baseline Protection. Features such as audit logs, granular permissions, and controlled data storage are integral parts of the solution.

Nubus uses established standards such as single sign-on, multi-factor authentication, and protection mechanisms against attacks. Access is managed centrally and can be traced at any time.

Nubus can be operated as a virtual machine or in Kubernetes environments: on-premises, in the private cloud, or with a service provider. This allows the solution to adapt to existing infrastructures.

Nubus integrates through open standards such as OIDC, SAML, LDAP, SCIM, and REST APIs. This allows existing applications and systems to be connected flexibly.

Yes. Nubus can fully replace Active Directory or be integrated in parallel. A gradual migration is possible without abruptly replacing existing systems.

Nubus is freely available as an open source solution. For productive use, Enterprise subscriptions are available with support, updates, and long-term maintenance.

You can download Nubus directly, request a demo, or get advice to find the right operating model for your organization.

Still Have Questions?
Get in touch