One identity for all corporate resources
Consolidate redundant user accounts and simplify access to Windows and Mac devices, on-premises services, and cloud applications.
Cloud applications
Leverage user account provisioning and single sign-on (SSO) to streamline account creation and authentication while improving security and convenience.
Native integration
Set up integrations with Microsoft 365 and Google Workspace in just a few clicks to enable SSO and automatic account creation.
Custom app authentication
Add support for SSO through SAML 2.0 to easily meet your organization’s needs with customizable app integration options.

On-Premises services
Leverage C2 Identity's low-latency hybrid architecture to authenticate on-premises services through an LDAP edge server.
Fast offline authentication
Authenticate services locally through an edge server without connecting to the cloud.
Simple deployment
Deploy an on-premises edge server node using Synology NAS or a Docker container.

*Users can leverage offline authentication to keep using the service even when internet access is unavailable.
Windows and Mac devices
Install the C2 Identity agent on Windows and Mac devices and let employees access all corporate devices with a single set of credentials.
Fast offline authentication
Authenticate devices locally through the agent without connecting to the cloud.
Unified device management
Provision, monitor, and manage all devices from a centralized console.

Cross-platform device management
Go beyond identity authentication. Provision and monitor Windows and macOS devices from a single, unified dashboard.
Quick deployment
Manage thousands of devices by installing the agent in bulk through Windows AD or Jamf.
Mass task execution
Deploy custom scripts across multiple devices to simplify maintenance, installation of software, generation of compliance reports, and more.
Missing device protection
Safeguard sensitive data by remotely shutting down, wiping, or locking devices.
Efficient user lifecycle management
Access the admin portal from any browser to manage individual or groups of user accounts, devices, and access permissions to all resources.
Flexible access control
Easily grant or revoke access to corporate resources with privileges inherited from existing groups or by explicitly allowing specific individuals.
Streamlined user onboarding
Provision access to devices and cloud apps for new employees in minutes and suspend their user accounts immediately when they leave the company.


Migrate or integrate with ease
Painlessly migrate to C2 Identity or use it as an extension of your existing directory service.
Windows AD integrationComing Soon
Expand the capabilities of your server by supplementing Active Directory's standard set of features with functionalities such as app authentication and macOS management.
Smooth migration
Migrate users and groups from an LDAP or Windows AD server without resetting user passwords, or import a list of users from a CSV file.
Convenient self-service portal
Free up IT teams' workloads by letting users reset their passwords, configure two-factor authentication (2FA), and customize their profiles.

Enhanced security
Protect all user credentials on C2 Identity with the Secure Remote Password (SRP) protocol and complex password requirements.
Secure credential protection
C2 Identity communicates with clients using SRP, a secure zero-knowledge password protocol. SRP generates a secure encryption key and provides authentication without ever sending password-equivalent data over the network, thereby protecting against man-in-the-middle attacks.
Customize password requirements
Protect user identities by enforcing complex passwords and enabling multi-factor authentication (MFA) with Time-based One-time Passwords (TOTPs).
Customer stories
See how these organizations achieved more with Synology.

"With C2 Identity, not only can we manage employee accounts more centrally but also set up their devices more easily in less time."
Tong, Office Manager, SAT Knowledge

"C2 Transfer’s end-to-end encryption helps our organization upload confidential files to external servers more securely. In addition, one-time password protection through email or phone further reduces our worries about data leaks."
KL, Product Manager, Ganzin Technology Inc.
Sign up for the C2 newsletter
Register now to get the latest updates about C2 services, technical insights, activities, and events.
Please enter your email address
Sign up now
Activate your cloud directory today
Monthly and yearly subscriptions are available with data residency in the EU, US, or APAC.
Free | Business | |
Data center | ||
Number of users | Up to 250 | From 10 (+$19.99/year or $1.99/month per additional user) |
Max. number of cloud applications | 5 | 2500 |
Max. number of devices | 10 | 2500 |
Max. number of edge servers
| 1 | 25 |
Cloud applications integration | ||
Native integration | Microsoft 365 & Google Workspace | Microsoft 365 & Google Workspace |
Customized SAML SSO Integration | ||
Shared accounts support
| ||
Device management | ||
Offline authentication | ||
Group policies
| ||
Management | ||
Cloud directory | ||
Windows AD integration Coming Soon | ||
Instant directory migration
| ||
Flexible access privileges
| ||
Identity lifecycle management
| ||
Self-service portal
| ||
Security | ||
Secure Remote Password (SRP) | ||
Password strength rules | ||
Auto Block
| ||
Multi-factor authentication (MFA) | Time-based one-time password (TOTP) at login and when accessing devices or applications. | Time-based one-time password (TOTP) at login and when accessing devices or applications. |
FAQs
How does Synology C2 Identity protect user information?
C2 Identity uses the Secure Remote Password (SRP) handshake protocol to authenticate users. SRP generates a secure encryption key each time a user signs in and provides authentication without ever sending password-equivalent data over the network to protect against man-in-the-middle attacks.
User identities are further protected by enforcing complex passwords and enabling multi-factor authentication (MFA) through time-based one-time passwords (TOTP).
All data is stored in highly secure data centers that have achieved ISO 27001 or SOC 2 Type II certifications.
For more technical details, please refer to our white paper.
How can I migrate data from existing directory services?
To learn how to migrate your directory service from Windows Active Directory, LDAP servers, or cloud-based solutions such as Google Workspace or Salesforce, refer to this article.
Sign up for the C2 newsletter
Register now to get the latest updates about C2 services, technical insights, activities, and events.
Please enter your email address
Sign up now
Notes:
The price displayed does not include VAT. Applicable taxes in accordance to your billing address will be included before checkout.