Introducing advanced session audit capabilities in Cloudflare One
The article discusses the concept of Zero Trust security, which involves defining granular controls and authorization policies per application, user, and device. It highlights how administrators can now easily audit all active user sessions and associated data used by their Cloudflare One policies, enabling them to maintain an improved ability to troubleshoot and diagnose Zero Trust deployments in a single, simple control panel. The article also provides a primer on application authentication and authorization mechanisms, focusing on HTTP cookies, JSON Web Tokens (JWT), and the stateless nature of JWTs. It concludes by discussing how Cloudflare has built a better way to debug issues related to user identity in Zero Trust without sharing JWTs or HAR files back and forth.
Company
Cloudflare
Date published
Nov. 16, 2023
Author(s)
Kenny Johnson
Word count
1155
Language
English
Hacker News points
None found.