Air-gapped MFA under §30 BSIG: how a German public body authenticates without the cloud
Some environments are built to have no way out. No outbound path to the internet, no cloud callback, no dependency a network operator cannot see and control. For the teams who run them, that isolation is the security control, and anything added inside has to …
Before and after: how a French local authority brought MFA and SSO to every access path, without leaving its on-premise Active Directory
A French local authority runs its identity infrastructure the way a great many public bodies do: an on-premise Active Directory at the centre, and a workforce of more than a thousand staff authenticating against it. What sat on top of that directory, however, had grown …
VPN, bastions, servers: how a European data center applies MFA for every client
A provider that hosts other companies’ infrastructure does not have one set of users to protect. It has dozens, each belonging to a different organization, and each expecting that its identities, its policies and its administrators stay strictly separate from everyone else’s. Adding multi-factor authentication …
On-premise identity resilience without giving up sovereignty: an alternative to Entra ID
Many organisations run their whole identity layer from a single site. Active Directory sits on-premise, a federation layer in front of it authenticates dozens of downstream applications, and remote access rides on the same chain. It works, until the site does not. A power, network …