Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Auth0 March 2024 Release: FGA, MFA Enrollment & Guardian

Okta
04/29/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


We will go over this month's new available features. Generally Available Features Fine-grained Authorization FGA is a new product offering from Okta. It's authorization as a service that enables developers to design authorization models from coarse-grained to fine-grained and everything in between in a way that's centralized, fast, and easy to use. With FGA, you can get much more granular with access rules, increasing security posture. Define authorization models for all of your applications in FGA, taking authorization out of the application, increasing developer efficiency. And since FGA allows developers to define authorization models based on the relationship a user has to a resource, they can better manage complexity as they add more users who need access to more resources. Progressive Factor Enrollment Using the post-login action, you can now easily customize your MFA flows to prompt users to enroll in specific factors. After a user enrolls in a factor, they can use that factor as a secondary method of authentication in future logins. Customer Identity Cloud now includes two new commands in the post-login API object, enroll with and enroll with any. These commands, paired with our recent Customize MFA Factor Selection feature release, allow you to specify precisely how to enroll and challenge the user with MFA factors based on contextual signals about the user, the organization, or the application they are logging into. These changes provide greater flexibility with MFA to design an authentication flow that reduces friction, cater to your end user's preferences, and align authentication with your organization's security policies. One-Time Password Mobile Enrollment for Guardian Guardian is a mobile application for iOS and Android devices that allows users to complete MFA with push notifications or temporary one-time passwords. Guardian can deliver the push notifications to users enrolled devices typically mobile phones or tablets or generate one-time passwords directly within the app. Users can then quickly respond to these push notifications or retrieve a one-time password to complete their login. Previously, the only way for users to enroll in Guardian was via a QR code. For users who didn't have access to scan the QR code on another device, this prevented enrollment. To give users more flexibility and make the enrollment process easier, end users can now manually enroll with a verification code as an alternative to using a QR code. Thanks for viewing the Customer Identity Cloud Monthly release highlights. Information and documentation on the latest updates can be found at auth0.com.

TL;DR

  • Fine-Grained Authorization (FGA) launches as a new authorization-as-a-service product, enabling relationship-based access control models that centralize authorization logic outside application code for improved security and developer efficiency.
  • Progressive Factor Enrollment introduces new post-login API commands (enroll with and enroll with any) that allow contextual MFA enrollment based on user, organization, or application attributes, reducing friction while maintaining security policies.
  • Guardian mobile authenticator now supports manual enrollment via verification codes, providing an alternative to QR code scanning for users who cannot access a second device during enrollment.

Summary

This March 2024 release update for Auth0's Customer Identity Cloud introduces three significant generally available features focused on authorization and authentication flexibility. The headline announcement is Fine-Grained Authorization (FGA), a new authorization-as-a-service product that enables developers to design centralized, relationship-based access control models ranging from coarse to fine-grained permissions. This approach removes authorization logic from application code, improving both security posture and developer efficiency while managing complexity as user and resource counts scale. The release also enhances multi-factor authentication capabilities with Progressive Factor Enrollment, which uses post-login actions and new API commands to allow contextual MFA enrollment based on user, organization, or application signals. Finally, the Guardian mobile authenticator app now supports manual enrollment via verification codes as an alternative to QR code scanning, addressing accessibility challenges for users who cannot scan codes on a separate device. These updates collectively strengthen Auth0's identity platform by providing more granular control over authorization decisions and more flexible authentication enrollment workflows.

Chapters

0:00 - Introduction
0:11 - Fine-Grained Authorization
0:56 - Progressive Factor Enrollment
1:49 - Guardian Mobile Enrollment

Key Quotes

0:17 "It's authorization as a service that enables developers to design authorization models from coarse-grained to fine-grained and everything in between in a way that's centralized, fast, and easy to use."
0:34 "Define authorization models for all of your applications in FGA, taking authorization out of the application, increasing developer efficiency."
1:36 "These changes provide greater flexibility with MFA to design an authentication flow that reduces friction, cater to your end user's preferences, and align authentication with your organization's security policies."

Categories:
  • » Cybersecurity » Identity & Access Management (IAM)
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Identity & Access
  • Product Announcement
  • Getting Started
  • Authentication
  • Authorization
  • Fine-Grained Authorization
  • Authorization as a Service
  • Multi-Factor Authentication
  • Progressive Enrollment
  • Guardian Authenticator
  • Identity and Access Management
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Auth0 March 2024 Release: FGA, MFA Enrollment & Guardian

              Upcoming Webinar Calendar

              • 06/17/2026
                12:00 PM
                06/17/2026
                Action1: The Remediation Gap: Vulnerability Management in the Age of AI
                https://www.truthinit.com/index.php/channel/2010/action1-the-remediation-gap-vulnerability-management-in-the-age-of-ai/
              • 06/23/2026
                01:00 PM
                06/23/2026
                The AI-Powered VMware Alternative
                https://www.truthinit.com/index.php/channel/2009/the-ai-powered-vmware-alternative/
              • 06/24/2026
                11:00 AM
                06/24/2026
                LATAM: Accelerating Insights on AI Through an Engaging Webinar Series
                https://www.truthinit.com/index.php/channel/2012/accelerating-insights-on-ai-through-an-engaging-webinar-series/
              • 06/25/2026
                01:00 PM
                06/25/2026
                Generative AI Security: Preventing AI from Becoming a Data Breach Multiplier
                https://www.truthinit.com/index.php/channel/1998/generative-ai-security-preventing-ai-from-becoming-a-data-breach-multiplier/
              • 07/01/2026
                04:00 AM
                07/01/2026
                Schutz von KI in Anwendungen, Agenten und APIs.
                https://www.truthinit.com/index.php/channel/2008/schutz-von-ki-in-anwendungen-agenten-und-apis/
              • 07/02/2026
                10:00 AM
                07/02/2026
                Resilience Insights from Hybrid Threats When the Cloud Faces Challenges
                https://www.truthinit.com/index.php/channel/2011/resilience-insights-from-hybrid-threats-when-the-cloud-faces-challenges/

              Upcoming Events

              • Jun
                17

                Action1: The Remediation Gap: Vulnerability Management in the Age of AI

                06/17/202612:00 PM ET
                • Jun
                  23

                  The AI-Powered VMware Alternative

                  06/23/202601:00 PM ET
                  • Jun
                    24

                    LATAM: Accelerating Insights on AI Through an Engaging Webinar Series

                    06/24/202611:00 AM ET
                    • Jun
                      25

                      Generative AI Security: Preventing AI from Becoming a Data Breach Multiplier

                      06/25/202601:00 PM ET
                      • Jul
                        01

                        Schutz von KI in Anwendungen, Agenten und APIs.

                        07/01/202604:00 AM ET
                        More events
                        Truth in IT
                        • Sponsor
                        • About Us
                        • Terms of Service
                        • Privacy Policy
                        • Contact Us
                        • Preference Management
                        Desktop version
                        Standard version