A model where apps rely on a single central identity provider for sign-in and access decisions instead of each handling them alone, which brings uniform policy, single sign-on and better oversight.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Modern authentication in context, with comparison tables and the common traps.
Terms in this definition
- WHERE
Limits a SELECT, UPDATE or DELETE to just the rows meeting a condition. Omit it, and the statement hits every row.
- Identity provider
Microsoft Entra ID is one example: a system that keeps identity records up to date and lets applications hand off sign-in, permission checks and logging to it.
- Iceberg reads
A setting on a Delta table that writes Iceberg metadata as well, letting Iceberg clients query the data while all writes still go through Delta.
- Exclusions
Scopes taken out of a policy assignment; they can only narrow its coverage, never widen it.
- SSO
Signing in once to gain access to multiple applications.
Related terms
- Connect-IPPSSession
Opens a Security & Compliance PowerShell session using modern authentication, signing in interactively or app-only with a certificate. It comes with the Exchange Online PowerShell module.
- Require approved client app
Conditional Access grant that only lets approved client apps in, meaning those that support modern authentication and are Intune-aware. It is commonly offered as an alternative to MFA by choosing Require one of the selected controls.