ForgeRock Alternative & Open-Source Migration Path

Open Identity Platform is the free, open-source continuation of the identity stack that ForgeRock was built on. Same lineage, CDDL licensed, no license fees, no vendor lock-in.

ForgeRock built its identity platform on a family of open-source projects covering access management, directory services, identity management, and an identity gateway. Over time those products moved to a closed, subscription-only model. The open-source line did not disappear: the community forked the last freely-licensed releases and has maintained, secured, and modernized them ever since as the Open Identity Platform.

If you run a ForgeRock deployment — or you're weighing its roadmap and licensing — Open Identity Platform is a like-for-like path that keeps your architecture open. Community help stays free on GitHub; independent vendors offer paid migration and support when you want it.

Map your ForgeRock stack to Open Identity Platform

Each ForgeRock product has a directly corresponding open-source project here.

ForgeRock product Open Identity Platform What it does Get it
ForgeRock Access Management (AM) OpenAM Authentication, SSO, authorization, federation, OAuth2/OIDC/SAML GitHub
ForgeRock Directory Services (DS) OpenDJ LDAPv3-compliant, high-availability directory / identity store GitHub
ForgeRock Identity Management (IDM) OpenIDM Identity management, provisioning, synchronization, compliance GitHub
ForgeRock Identity Gateway (IG) OpenIG Reverse proxy / identity gateway, session and credential handling GitHub
ForgeRock connectors (ICF) OpenICF Identity connector framework linking IDM to target systems GitHub

Why organizations move to Open Identity Platform

Stay open source

Every product is CDDL-licensed and free to download, run, and modify. No per-user or per-server license fees.

No vendor lock-in

Open code, open standards (OAuth2, OIDC, SAML, LDAP). You control your deployment and your data.

Same lineage

The projects share a common heritage with ForgeRock's, so your existing concepts, skills, and architecture carry over.

Actively maintained

Regular releases and security fixes across all five products, published openly on GitHub.

Community first

Free help on GitHub Discussions and open documentation — no support contract required to get started.

Support when you need it

Independent approved vendors offer SLAs, consulting, and migration services — optional, and neutral by design.

How a migration typically works

Every environment is different, but migrations from a ForgeRock stack generally follow the same shape. Because the codebases share a lineage, much of your configuration maps across — but always validate against your own deployment.

  1. Assess — inventory your ForgeRock components, versions, customizations, and integrations, and map them to the products above.
  2. Stand up Open Identity Platform — deploy the matching products (start with the directory and access management) in a test environment.
  3. Migrate configuration and data — move realms, policies, agents, connectors, and directory data; adapt customizations where needed.
  4. Validate — test authentication flows, federation, provisioning, and integrations against your requirements.
  5. Cut over — plan the switch, run in parallel if you can, and keep a rollback path.

Planning a move off ForgeRock?

Start free on GitHub, or bring in an independent vendor for a migration assessment, SLAs, and hands-on help. The project stays neutral — vendors are listed alphabetically, with no endorsement.

Frequently asked questions

Is Open Identity Platform the same as ForgeRock?

No. Open Identity Platform is an independent community project. Its products — OpenAM, OpenDJ, OpenIDM, OpenIG and OpenICF — continue the open-source releases that ForgeRock's commercial products were built on, maintained under the CDDL license.

Do I have to pay license fees to move off ForgeRock?

No. Every Open Identity Platform product is free and open source under the CDDL license — no license fees and no vendor lock-in. Commercial support is entirely optional and comes from independent vendors, not a mandatory subscription.

Can I migrate my existing ForgeRock configuration and data?

Because the products share a common lineage, many concepts, configurations, and directory data map closely between ForgeRock and Open Identity Platform. The exact effort depends on your versions and customizations — read the documentation, ask the community, or engage an approved vendor for a migration assessment.

Where do I get help migrating from ForgeRock?

Free community help is available on GitHub Discussions, and full documentation is online. For SLAs, consulting, and hands-on migration work, independent approved vendors are listed on the Support & Services page.