Microsoft Entra Identity Platform

A developer platform that helps protect your users and data.

Introducing Trusted Certificate Authorities (public preview) in App management policy

In March 2023, we announced a framework called App management policy which allows admins to implement security best practices for applications in their tenant. Now, we've added a new capability that allows admins to define trusted certificate issuers for their tenant. Attempts to add an app certificate that does not meet the criteria defined in the policy will be rejected.

Public vs. confidential clients and how to avoid common security pitfalls in identity

This blog post delves into the critical differences between public clients, which are inherently more exposed and vulnerable, and confidential clients, which operate under stringent security measures to safeguard sensitive data. You’ll discover why knowing the difference matters and learn a few best practices to help you avoid common pitfalls.