공지 • Apr 09
Okta, Inc. Announces the Availability of Auth for GenAI in Developer Preview, as Part of the Auth0 Platform
Okta, Inc. announced the availability of Auth for GenAI in Developer Preview, as part of the Auth0 Platform, a suite of features that enable developers to integrate secure identity into GenAI applications, helping ensure AI agents have built-in authentication, fine-grained authorization, asynchronous workflows, and secure API access. Through other new capabilities, developers can better meet enterprise app requirements and deliver seamless experiences that address the expectations of today's end users. As LLMs become increasingly commoditized, with more widely available, cost-effective models and open-source AI frameworks emerge to rival proprietary systems, AI agents will become commonplace quicker than expected. This is in addition to LLMs making it possible for anyone to program in natural language. Despite AI agents' ability to connect with more layers of data than LLMs alone, security remains an after thought. To keep up with the pace of innovation, developers are wholly focused on functionality, often moving forward with insecure implementations or defaulting to postponing or canceling their AI agent projects altogether. Authorization is being frequently overlooked. Agents are connecting to APIs with integrations that aren't optimized for AI-driven access, and email or push notifications triggered to approve sensitive actions are being implemented with minimal security controls. However, it can be challenging to add security effectively once deployed. Secure Identity in GenAI Applications with a Seamless Developer Experience: AI agents are being granted access to systems without the right identity controls, creating security blind spots and risk. Traditional authentication methods were't built for AI-driven applications, leaving gaps in control and accountability. Developers need to ensure AI agents authenticate users, interact with other apps on the user's behalf, use asynchronous interactions, and consider user permissions when accessing data. Now available in Developer Preview, Auth for GenAI enables developers to meet the identity requirements to build secure agentic apps and seamlessly integrate with the broader GenAI ecosystem. Auth for GenAI also integrates with popular AI frameworks like Langchain, Llamaindex, Google GenKit, and Vercel.ai, giving developers greater flexibility and efficiency in building and deploying AI-powered applications. Features include: User Authentication: To operate securely, AI agents must authenticate users, just like any other application, ensuring they confirm the user's identity before granting access or taking specific actions. With Auth for GenAI, developers can build a secure and seamless experience for AI agents to authenticate users. Token Vault: AI agents interact with applications on behalf of users through APIs, not user interfaces. Without strong identity controls, AI agents could access APIs they shouldn't, leak sensitive data to unauthorized sources, or be unable to perform tasks. Auth0Universal Logout provides out-of-the-box user session and token revocation for enterprise-grade security, mitigating risks across the app ecosystem without building and maintaining custom global token revocation endpoints. Auth0 Organizations helps manage business customers at scale with branded, federated login flows tailored to each business's unique needs, supporting up to 2 million business customers within a single Auth0 tenant. Auth0 Fine Grained Authorization enables user collaboration and access control with granularity, all with easy-to-use APIs. Improve User Experiences While Strengthening Security: Modern digital experiences are raising customer expectations and redefining what businesses must deliver to remain competitive. Businesses need to show that they understand their customers' unique needs by personalizing their offers, providing ease of use across all channels, and proving they can protect their data. What's New - Auth0 Platform: Innovations for Secure Experiences: Through new enhancements to the Auth0 platform, organizations can deliver seamless, trusted customer experiences before, at, and after login. Innovations include: Before login: Tenant Access Control - Control - Control who can access an app -- and how. Organizations can set rules that determine whether users can access the app, get blocked, or get redirected, and they can do this all before the user ever reaches the login screen. At login screen. At login: Tenant Access Control- Control - Control who can access the app, get blocking, get blocked, or get blocked, and get redirected, and they can does this all before the user ever reached the login screen. At login screens. At login screen. At authentication, and they can do this this all before the user ever reach the user ever reaches the user ever reaches the user user ever reaches the login screen; At login screen; At login screen. At login screen; At login; At login screen; At authentication, and they can can do this this screen; At login screen.