Things I'm building, testing, breaking, and learning.
Risk-based Conditional Access and Identity Protection in Microsoft Entra ID — creating policies that force MFA on risky sign-ins and understand the difference between user risk and sign-in risk.
Federation, OIDC authentication and automatic SCIM provisioning between Entra ID and Cloudflare Access — step by step with common pitfalls documented.