• Logo
    Canonical Identity
  • More resources
    • Discourse
    • Matrix
    • GitHub
Contents Menu Expand Light mode Dark mode Auto light/dark, in light mode Auto light/dark, in dark mode Skip to content
Canonical Identity documentation
Canonical Identity documentation
  • Canonical Identity Platform
    • Tutorials
      • Get started with the Canonical Identity Platform
      • Get started with the Canonical Identity and Access Proxy
      • Charm-focused tutorials
        • Kratos
        • Hydra
        • OpenFGA
        • GLAuth
        • GLAuth Utils
    • How-to guides
      • Use the Kratos local identity provider
      • Manage external identity providers
      • Onboard an application with Charmed Hydra
      • Integrate your OIDC-compatible charm
      • Integrate your charm with Identity and Access Proxy
      • Integrate with OpenFGA
      • Manage users
      • Link social or enterprise accounts
      • Integrate with the Canonical Observability Stack (COS)
      • Perform database migration
    • Reference
      • Architecture overview
      • Self-service flows
        • Login Flow
      • Observability in Identity Platform
        • Observability setup in Charmed Hydra
        • Observability setup in Charmed Kratos
        • Observability setup in Charmed Identity Platform Login UI
        • Observability setup in Charmed OpenFGA
      • Charms
        • Kratos
        • Hydra
        • Login UI
        • Kratos External IdP Integrator
        • OpenFGA
        • OAuth2 Proxy
        • GLAuth
        • GLAuth Utils
    • Explanation
      • Understanding OAuth 2.0 and OpenID Connect (OIDC)
      • Security in Canonical Identity Platform
        • Charmed Hydra Security
        • Charmed Kratos Security
        • Charmed OpenFGA Security
        • Charmed Login UI Security
        • Charmed Kratos External IdP Integrator Security
  • Charmed Authentik
    • Tutorials
      • Getting started
    • How-to guides
      • Bootstrap admin credentials and access
      • Manage users and groups
      • Protect OIDC and OAuth applications
      • Protect LDAP applications
      • Integrate upstream identity providers
      • Common operational tasks
      • Integrate with Canonical Observability Stack (COS)
    • Reference
      • Configuration
      • Integrations and contracts
      • Observability
      • Charms
        • Server
        • Worker
        • LDAP Outpost
    • Explanation
      • Architecture
      • Security architecture
  • Choosing an identity solution
Back to top
Contribute to this page

Explanation¶

Discussion and clarification of key topics related to Identity Platform, including design, legacy information, and security.

Core concepts¶

  • Understanding OAuth 2.0 and OpenID Connect (OIDC)

Security¶

  • Security in Canonical Identity Platform

© 2026 CC-BY-SA, Canonical Ltd.
Last updated on Aug 20, 2026
Contents
  • Explanation
    • Core concepts
    • Security