OAuth guides
The open authorisation standard underlying modern authentication in Microsoft 365 and most cloud services. See the glossary entry →
8 guides touch on oauth.
- App consent policies and the admin consent workflow
How to stop consent phishing without blocking legitimate apps: Entra ID app consent policies, the admin consent workflow, and a review process that scales.
- Business Email Compromise response playbook
How to respond to a confirmed BEC incident in Microsoft 365 — containment, investigation, remediation, and prevention.
- Entra ID app registrations and enterprise apps
Two sides of the same coin — app registrations define an app, enterprise apps grant it to your tenant. Here's how they relate.
- Exchange hybrid deployment
How hybrid Exchange works — connecting on-prem Exchange Server with Exchange Online, what the wizard actually does, and the path off the last server.
- Microsoft 365 audit log query patterns
Practical patterns for finding what you need in the unified audit log — investigations, compliance, and routine checks.
- Microsoft Defender for Cloud Apps explained
Defender for Cloud Apps is Microsoft's CASB — discovering, monitoring, and controlling SaaS app usage.
- Power Platform custom connectors
How to build custom connectors for Power Automate and Power Apps — wrapping any REST API as a Power Platform connector.
- SAML SSO with Entra ID
How to set up SAML single sign-on between a third-party app and Microsoft Entra ID.