• Home
  • Contact Cloud Identity Architect
  • Privacy Policy for AdverSite Web Holdings, Inc.

Cloud Identity Architect

Identity Solutions for the Public and Hybrid Cloud

  • Active Directory (On Premises)
  • API Authentication
  • Azure AD
  • Browser Security
  • Direct Logins
  • Entra ID
  • Google Workspace
  • Graph API
  • JWT
  • MFA
  • OAuth 2.0
  • Office 365
  • SAML
  • SCIM
  • Securing Identity
  • SSO
  • Transport Layer
  • Troubleshooting – network and identity
  • Uncategorized

Isolating Browser Sessions – In the Cloud and Locally

anuj July 17, 2025 Isolating Browser Sessions – In the Cloud and Locally2026-09-18T15:59:17+00:00 Browser Security
Browser Isolation Options for Whitelisted Site Access
Continue Reading

SAML-Based SSO: Source IP for IdP and SP Initiated Flows

anuj July 11, 2025 SAML-Based SSO: Source IP for IdP and SP Initiated Flows2025-07-11T04:57:42+00:00 SAML
SAML-Based SSO: Source IP for IdP and SP Initiated Flows SP-Initiated SSO Flow Summary: The user starts at the Service Provider (SP), which redirects them to the Identity Provider (IdP)…
Continue Reading

Capturing a Second Factor Before Full Trust

anuj May 21, 2025 Capturing a Second Factor Before Full Trust2026-09-18T16:07:12+00:00 Entra ID
MFA Before Full Access: A Secure User Onboarding Flow Capturing a Second Factor Before Full Trust: A Smarter Onboarding Flow In most traditional account creation flows, users are granted full…
Continue Reading

Enforcing a Second Factor in Entra ID: How to Secure Users Who Never Had One

anuj May 21, 2025 Enforcing a Second Factor in Entra ID: How to Secure Users Who Never Had One2025-05-21T00:11:32+00:00 Azure AD
Enforcing a Second Factor in Entra ID: How to Secure Users Who Never Had One If a user isn’t using a second factor, they’re a risk. Many organizations still have…
Continue Reading

Inbound versus Outbound SSO

anuj May 9, 2025 Inbound versus Outbound SSO2025-05-09T15:25:05+00:00 SSO
? Inbound SSO (Single Sign-On) Definition:Inbound SSO means users from an external identity provider (IdP) can sign into your application or service using their existing credentials. Your application becomes the…
Continue Reading

OAuth – a primer

anuj April 25, 2025 OAuth – a primer2025-04-25T20:24:06+00:00 OAuth 2.0
Understanding OAuth: Client Types, Flows, and Key Concepts OAuth is the backbone of modern API security, enabling controlled access to resources without sharing user credentials. At its core, OAuth is…
Continue Reading

Two OAuth Flows – Public and Private

anuj March 14, 2025 Two OAuth Flows – Public and Private2026-09-18T16:35:43+00:00 OAuth 2.0
Public vs. Confidential OAuth Clients and Flows Public Flow - Through the Browser, Token returned to the browser. Implicit Grant Flow Private/Confidential Clients (Backend OAuth Flow), Client Credentials Flow  Public…
Continue Reading

Bearer Tokens Based Authentication

anuj January 18, 2025 Bearer Tokens Based Authentication2026-09-20T15:02:54+00:00 API Authentication
Bearer Token–Based API Authentication and Authorization Bearer tokens are widely used to protect APIs. After a client obtains an access token from an authorization server, it presents that token whenever…
Continue Reading

Private Key JWT Authentication

anuj November 13, 2024 Private Key JWT Authentication2026-09-20T15:02:32+00:00 JWT
Private Key JWT Authentication Private Key JWT—usually identified by the OAuth client-authentication method name private_key_jwt—allows an application to authenticate using asymmetric cryptography instead of sending a shared client secret. The…
Continue Reading

WFH and Remote Access Security Risks

anuj October 21, 2024 WFH and Remote Access Security Risks2024-10-21T15:10:46+00:00
Mitigation - Important multi-factor authentication automatic session timeouts and access monitoring Unauthorized access to devices Any machine that is capable of connecting to your network should be protected using multi-factor…
Continue Reading
‹1234›»
Copyright ©2026. Cloud Identity Architect
Mesocolumn Theme by Dezzain