
Identity provider
10
MENTIONS
5
EPISODES
5
PODCASTS
Search complete. 10 mentions across 5 episodes found for "Identity provider".
Oct 9, 2026
JNUC 2026 Recap
W
51:05William SmithGUEST
I saw Mark there.
W
51:06William SmithGUEST
Uh, he asked, "Can rings be based on intra IDP group, intra ID or IDP groups, like an identity provider?" Good question.
W
51:15William SmithGUEST
I have no idea.
W
51:17William SmithGUEST
Um, I haven't heard that one.
Episode 479: The 27 Version Report
T
63:35Tom BridgeHOST
I actually think that that's a smart thing to add to the platform because it opens things up.
T
63:39Tom BridgeHOST
But it also means that Apple has to maintain developer relations with its IDP partners.
T
63:45Tom BridgeHOST
And my hope is that we start to see those things roll out as we come into the future here.
T
63:50Tom BridgeHOST
Um, I certainly know that, you know, friend of the pod, Joel Renick was talking about it this summer a lot in the, you know, the various beta, you know, forums for this kind of stuff.
T
65:23Tom BridgeHOST
mean, this is what's holding me back from doing
M
65:24Marcus RansomHOST
it,
T
65:25Tom BridgeHOST
right? Like, I mean, I don't have an IDP.
T
65:27Tom BridgeHOST
My IDP is Google Workspace because that's all we need right now.
#307 - Integration with Cloud IAG (Martin Raepple) | SAP on Azure Video Podcast
M
19:04Martin RaeppleGUEST
Later on, I as a user logging or I as an approver in that workflow in IG, I log into the IG tenant that always goes via the Cloud Identity Services.
M
19:15Martin RaeppleGUEST
As you can see here on this diagram, In my demo environment, the Cloud Identity Services tenant is configured as a corporate proxy or an IDP proxy that proxies via the OIDC protocol to the Entra tenant.
M
19:34Martin RaeppleGUEST
So when I later on log in as the approver, I'm silently forwarded here through the proxy to Entra and log in as a user here with my credentials.
M
19:47Martin RaeppleGUEST
So provisioning then finally, once the user has successfully or has been approved access in IAG, provisioning then also takes place from IAG all the way through the connectivity service by using a destination that goes all the way to the cloud connector and then finally to the backend system and will assign the the technical role or the PFCG role, in this case, SAP BC EPM demo, which is contained in that business role.
13 MINS LATER
S
33:27speaker_2UNKNOWN
All right.
S
33:28speaker_2UNKNOWN
And again, I'm logging
M
33:30Martin RaeppleGUEST
in through the corporate IDP proxy in IIS.
M
33:35Martin RaeppleGUEST
And I'm always using my credentials in the Android tenant for any user.
#448 - Sponsor Spotlight - Opal Security
H
27:10Howard TingGUEST
So we have to do the best we can.
H
27:13Howard TingGUEST
And in some cases, we'll... piggyback off of the IDP, whether it's Okta or Entra or something like that, and we'll manage the groups.
H
27:22Howard TingGUEST
And ultimately, that's what's managing access into the target systems.
H
27:26Howard TingGUEST
But the best scenario is always where we have a direct connector.
7 MINS LATER
H
34:33Howard TingGUEST
I need access to this customer's database because I'm working on this ticket or incident for them.
H
34:40Howard TingGUEST
The AI will go and look to see, is there a ticket, active ticket for that customer? Is this the engineer that's assigned? Does this level of access that's requested match the incident and, you know, what the incident needs to resolve? And so the AI can go do all that research, you know, fetch all of the context from the ticketing system, messaging apps, everything.
H
35:03Howard TingGUEST
Obviously, look inside the IDP and it will evaluate all that.
H
35:08Howard TingGUEST
So it shows all that reasoning that we do and brings all that context and packages in a very simple to digest format and presents it all in a very consumable manner to the human.
Mikrotik and Cisco Active Exploits - The 443 Podcast - Episode 387
M
23:35Marc LaliberteHOST
And basically how the attackers got in is they created their own Brevo account and set up single sign-on to a SAML identity provider.
M
23:43Marc LaliberteHOST
They then invited legitimate Brevo users in other accounts into their tenant.
M
23:50Marc LaliberteHOST
If those Brevo users accepted the invite, the, uh, the attacker could use SAML single sign-on from their IDP that they controlled to log in as that other user.
M
24:01Marc LaliberteHOST
Where the issue was is that should have let them log in as that user in their tenant, the attacker's tenant.
M
24:07Marc LaliberteHOST
But due to some scoping issues, it allowed them to log in as that user in any tenant that that user had access to.
M
24:21Marc LaliberteHOST
Yep, exactly.
M
24:22Marc LaliberteHOST
Says Uh, it makes sense.
M
24:24Marc LaliberteHOST
If you control the IDP, you control being able to log in as that user in the IDP.