Identity · Authentication
Device Identity
Giving devices verifiable identities so access decisions can consider what the request came from, not just who made it.
IntermediateUpdated 2026-09-01
Overview
Devices obtain identity by domain join, Entra registration or join, MDM enrolment and certificates issued to a hardware backed key store such as a TPM. That identity carries attributes: managed, compliant, encrypted, patched.
Device identity is what makes Zero Trust practical. Without it, policy can only reason about user and network location, both of which are easily borrowed.
