Microsoft identity platform overview - Microsoft identity platform (2024)

  • Article

The Microsoft identity platform is a cloud identity service that allows you to build applications your users and customers can sign in to using their Microsoft identities or social accounts. It authorizes access to your own APIs or Microsoft APIs like Microsoft Graph. The identity platform supports developers building single-tenant, line-of-business (LOB) applications, as well as multi-tenant software-as-a-service (SaaS) applications.

The following diagram shows the Microsoft identity platform at a high level, including the application registration experience, SDKs, endpoints, and supported identities or account types.

Microsoft identity platform overview - Microsoft identity platform (1)

There are several components that make up the Microsoft identity platform:

  • OAuth 2.0 and OpenID Connect standard-compliant authentication service enabling developers to authenticate several identity types, including:

    • Work or school accounts, provisioned through Microsoft Entra ID
    • Personal Microsoft accounts (Skype, Xbox, Outlook.com)
    • Social or local accounts, by using Azure AD B2C
    • Social or local customer accounts, by using Microsoft Entra External ID
  • Open-source libraries: Microsoft Authentication Library (MSAL) and support for other standards-compliant libraries. The open source MSAL libraries are recommended as they provide built-in support for Conditional Access scenarios, single sign-on (SSO) experiences for your users, built-in token caching support, and more. MSAL supports the different authorization grants and token flows used in different application types and scenarios.

  • Microsoft identity platform endpoint - The Microsoft identity platform endpoint is OIDC certified. It works with the Microsoft Authentication Libraries (MSAL) or any other standards-compliant library. It implements human readable scopes, in accordance with industry standards.

  • Application management portal: A registration and configuration experience in the Microsoft Entra admin center, along with the other application management capabilities.

  • Application configuration API and PowerShell: Programmatic configuration of your applications through the Microsoft Graph API and PowerShell so you can automate your DevOps tasks.

  • Developer content: Technical documentation including quickstarts, tutorials, how-to guides, API reference, and code samples.

For developers, the Microsoft identity platform offers integration of modern innovations in the identity and security space like passwordless authentication, step-up authentication, and Conditional Access. You don't need to implement such functionality yourself. Applications integrated with the Microsoft identity platform natively take advantage of such innovations.

With the Microsoft identity platform, you can write code once and reach any user. You can build an app once and have it work across many platforms, or build an app that functions as both a client and a resource application (API).

Getting started

Choose your preferred application scenario. Each of these scenario paths has an overview and links to a quickstart to help you get started:

For a more in-depth look at building applications using the Microsoft identity platform, see our multipart tutorial series for the following applications:

As you work with the Microsoft identity platform to integrate authentication and authorization in your apps, you can refer to this image that outlines the most common app scenarios and their identity components. Select the image to view it full-size.

Microsoft identity platform overview - Microsoft identity platform (2)

Learn authentication concepts

Learn how core authentication and Microsoft Entra concepts apply to the Microsoft identity platform in this recommended set of articles:

More identity and access management options

Azure AD B2C - Build customer-facing applications your users can sign in to using their social accounts like Facebook or Google, or by using an email address and password.

Microsoft Entra B2B - Invite external users into your Microsoft Entra tenant as "guest" users, and assign permissions for authorization while they use their existing credentials for authentication.

Microsoft Entra External ID - A customer identity and access management (CIAM) solution that lets you create secure, customized sign-in experiences for your customer-facing apps and services.

Next steps

If you have an Azure account, then you have access to a Microsoft Entra tenant. However, most Microsoft identity platform developers need their own Microsoft Entra tenant for use while developing applications, known as a dev tenant.

Learn how to create your own tenant for use while building your applications:

Microsoft identity platform overview - Microsoft identity platform (2024)
Top Articles
What is ASP and how do I troubleshoot ASP drops on an ASA ? - Fir3net
Mockingjay - HELP: WHY did snow LAUGH at Katniss when she killed Coin? Showing 1-22 of 22
Umbc Baseball Camp
Ixl Elmoreco.com
Affidea ExpressCare - Affidea Ireland
Explore Tarot: Your Ultimate Tarot Cheat Sheet for Beginners
How to change your Android phone's default Google account
Flights to Miami (MIA)
Pike County Buy Sale And Trade
Slay The Spire Red Mask
Cars For Sale Tampa Fl Craigslist
Best Pawn Shops Near Me
Regular Clear vs Low Iron Glass for Shower Doors
Lenscrafters Huebner Oaks
Rhinotimes
N2O4 Lewis Structure & Characteristics (13 Complete Facts)
Obsidian Guard's Cutlass
/Www.usps.com/International/Passports.htm
Ruse For Crashing Family Reunions Crossword
Company History - Horizon NJ Health
Inbanithi Age
Gs Dental Associates
Great ATV Riding Tips for Beginners
Skidware Project Mugetsu
Weather Underground Durham
Co10 Unr
Till The End Of The Moon Ep 13 Eng Sub
Ringcentral Background
Puffin Asmr Leak
Proto Ultima Exoplating
Ilabs Ucsf
Gerber Federal Credit
Ny Post Front Page Cover Today
Culvers Lyons Flavor Of The Day
Felix Mallard Lpsg
Stanley Steemer Johnson City Tn
Busted Newspaper Campbell County KY Arrests
Doe Infohub
Stosh's Kolaches Photos
Go Nutrients Intestinal Edge Reviews
Access to Delta Websites for Retirees
Stitch And Angel Tattoo Black And White
antelope valley for sale "lancaster ca" - craigslist
Diesel Technician/Mechanic III - Entry Level - transportation - job employment - craigslist
Ark Silica Pearls Gfi
Immobiliare di Felice| Appartamento | Appartamento in vendita Porto San
Marion City Wide Garage Sale 2023
Southern Blotting: Principle, Steps, Applications | Microbe Online
Latest Posts
Article information

Author: Cheryll Lueilwitz

Last Updated:

Views: 6063

Rating: 4.3 / 5 (74 voted)

Reviews: 81% of readers found this page helpful

Author information

Name: Cheryll Lueilwitz

Birthday: 1997-12-23

Address: 4653 O'Kon Hill, Lake Juanstad, AR 65469

Phone: +494124489301

Job: Marketing Representative

Hobby: Reading, Ice skating, Foraging, BASE jumping, Hiking, Skateboarding, Kayaking

Introduction: My name is Cheryll Lueilwitz, I am a sparkling, clean, super, lucky, joyous, outstanding, lucky person who loves writing and wants to share my knowledge and understanding with you.