Book Image

Cloud Identity Patterns and Strategies

By : Giuseppe Di Federico, Fabrizio Barcaroli
5 (1)
Book Image

Cloud Identity Patterns and Strategies

5 (1)
By: Giuseppe Di Federico, Fabrizio Barcaroli

Overview of this book

Identity is paramount for every architecture design, making it crucial for enterprise and solutions architects to understand the benefits and pitfalls of implementing identity patterns. However, information on cloud identity patterns is generally scattered across different sources and rarely approached from an architect’s perspective, and this is what Cloud Identity Patterns and Strategies aims to solve, empowering solutions architects to take an active part in implementing identity solutions. Throughout this book, you’ll cover various theoretical topics along with practical examples that follow the implementation of a standard de facto identity provider (IdP) in an enterprise, such as Azure Active Directory. As you progress through the chapters, you’ll explore the different factors that contribute to an enterprise's current status quo around identities and harness modern authentication approaches to meet specific requirements of an enterprise. You’ll also be able to make sense of how modern application designs are impacted by the company’s choices and move on to recognize how a healthy organization tackles identity and critical tasks that the development teams pivot on. By the end of this book, you’ll be able to breeze through creating portable, robust, and reliable applications that can interact with each other.
Table of Contents (15 chapters)
Part 1: Impact of Digital Transformation
Part 2: OAuth Implementation and Patterns
Part 3: Real-World Scenarios


As this ebook edition doesn't have fixed pagination, the page numbers below are hyperlinked for reference only, based on the printed edition of this book.


AAD, authentication types

federated authentication 172

MFA 171

passwordless authentication 175, 176

PHS 173

Primary Refresh Token (PRT) 173, 174

PTA 172

Seamless SSO 173, 174

AAD Connect Cloud Sync 166

AAD Connect Sync 165

AAD-issued token

example 184-186

AAD Provisioning Agent 168

AAD tenant 195

AAD, user provisioning

Conditional Access 186-188

external identities 190, 191

Identity Governance 192-194

Identity Protection 189

Microsoft Graph 195-198

Privileged Identity Management (PIM) 189, 190

synchronization, from cloud HR system to 166, 167

synchronization, from on-premises to 165, 166

synchronization, to cloud application from 168

synchronization, to on-premises application or system from 168-170

verifiable credentials...