Zero-Trust SSO Lab Guide
Design and validate a zero-trust SSO with policy enforcement points.
Enterprise sign-on, conditional access, and hybrid identity bridging as it works in the field.
# Track 04 SSO and Federation 8 hands-on labs # prepare → do → prove → explain
Each lab is standalone but builds on the last. Capture evidence as you go, and read the track FAQ for the concepts behind them.
Design and validate a zero-trust SSO with policy enforcement points.
Complex SSO patterns: multi-IdP, brokered federation, custom claims.
Concept-first companion overview of zero-trust SSO principles.
Alternate walkthrough emphasising SP-initiated federation nuances.
Layer risk, device, location and app conditions into a coherent policy set.
Establish end-to-end SAML SSO with a real service provider.
Scale SAML across multiple apps with a common metadata pipeline.
Bridge on-prem AD and a cloud IdP without losing lifecycle integrity.
New to SSO and Federation? The knowledge-base article explains every concept in plain English before you touch a keyboard.