Federation lets you trust identities from external organizations without managing their credentials. You configure a trust relationship between identity providers. Users authenticate to their home organization and access your resources with tokens.
SAML and OIDC are common federation protocols. Your partner's employees authenticate to their IdP. Their IdP issues an assertion or token. Your systems accept these tokens based on the trust relationship. You define what access federated identities receive without creating accounts in your directory.