I would like to better understand how the Identity fits into the overall scheme of things when determining which policy will be run on a WSA. Is there a link or a doc someone may refer me to for this?
Identity in WSA is used to identify the user requesting web access. It can be used to create policies based on the IP address of the machines or the Authenticated username/groups of the users.