Everything You Ever Wanted to Know About Authentication

  Рет қаралды 103,436

Twilio

Twilio

Күн бұрын

Пікірлер
@yapayzeka
@yapayzeka 11 ай бұрын
dude stop developing and go with the education bussiness. you are king. very very explanatory. thank you very much.
@vaylx2253
@vaylx2253 3 жыл бұрын
Man you know what's awesome? When you've been studying web dev for a few months and you're familiar with 90% of what was done here :) Awesome talk, thanks!
@bjojosimpson
@bjojosimpson 2 жыл бұрын
The deeper you go and the experienced you become, the faster this feeling will fade away. You are welcome.
@sgtduckduck
@sgtduckduck 2 жыл бұрын
@ReivenIV dunning Kruger is a hell of a drug
@shenth27
@shenth27 4 жыл бұрын
Great talk by a bodybuilder..
@ahora1026
@ahora1026 3 жыл бұрын
developers should take care of their health more than others. because they sit all day night
@IdiotGaming
@IdiotGaming 2 жыл бұрын
he just did 1 push-up when he got an error
@yogitasheth5144
@yogitasheth5144 5 жыл бұрын
SO MUCH COVERED IN 30 MINS!!!!! AWESOME EXPLANATION!!!!!!
@thomas-sinkala
@thomas-sinkala 2 жыл бұрын
One of the best technical talk I have ever watched.
@guiAI
@guiAI 4 жыл бұрын
The best talk on authentication, and i needed this for nodejs. This is perfect!
@cientifica9150
@cientifica9150 2 жыл бұрын
This man is a legend , his video is 100% useful and straightforward Thank you so much for this
@victortruong2538
@victortruong2538 3 жыл бұрын
Damm that might be one of the best presentation I have seen in a while
@Enderwolf23
@Enderwolf23 2 жыл бұрын
This is a great beginner guide for really basic authentication. I was hoping this would be a talk about different types of authentication. I guess I should have read the video description. I know I'm 5 years late to the party but maybe somebody else will see my comment and spare themselves a half an hour. (not trying to knock the guy, just the title was misleading and not what I was looking for)
@cientifica9150
@cientifica9150 2 жыл бұрын
Hey! Hello I'm a beginner in all this and I'm very interested and in this topic, do you have recommendations about what sources (books, videos, free courses) can I use to learn more about authentication?
@alekkras3487
@alekkras3487 4 жыл бұрын
Give this dude an hour next time :) Great talk!
@srijanpaul
@srijanpaul 4 жыл бұрын
He was very efficient with his time slot! Great talk
@khaledlakehal5450
@khaledlakehal5450 3 жыл бұрын
I love this guy 😂 I love the language and how he sees things. You can say he really understand what he’s talking about from first second.
@ismailnurudeen
@ismailnurudeen 4 жыл бұрын
This was very insightful. I had to rewatch the last half just to solidify the concepts. Thanks.
@Abhinavhind
@Abhinavhind 4 жыл бұрын
This is the best tutorial for web authentication. Thanks Twillio
@ChiCity511
@ChiCity511 5 жыл бұрын
at 15:32 shouldn't it be checking for a session token or something not the user_id?
@haopeiyang3443
@haopeiyang3443 5 жыл бұрын
Same thing I was thinking. The session cookie seems to be the user._id and if this bit of info is leaked to the public, then it's easy to mimic a session of another user just by setting the cookie manually. This is how I saw it. I may be missing something.
@fnShun
@fnShun 5 жыл бұрын
@@haopeiyang3443 I guess, to avoid this, the "httpOnly"-flag is used
@fabianmeyertoens
@fabianmeyertoens 4 жыл бұрын
It is checking for the req.session.userId because that is set on the server after a successful login (14:44). This is not coming from the client.
@arindam1249
@arindam1249 2 жыл бұрын
wow! loved the talk
@vishalrana4526
@vishalrana4526 3 жыл бұрын
I got Goosebumps. Awesome talk.
@周亮-m4i
@周亮-m4i 4 жыл бұрын
This sharing is awesome, shared the basic concept of authentication in really short time.
@Sun0fABeach
@Sun0fABeach 5 жыл бұрын
Very clean and easy to follow overview!
@twilio
@twilio 5 жыл бұрын
Thanks for watching!
@birdofhermes6152
@birdofhermes6152 3 жыл бұрын
So glad CSRF was included.
@ineptDev
@ineptDev 5 жыл бұрын
Unbelievable quality of the material. Biiiiiiig LIKE!
@allanjunli
@allanjunli 3 жыл бұрын
This guy is amazing, learned so much.
@ksubyslowed
@ksubyslowed 5 жыл бұрын
I saw the Talk from 2015 and this looks the same but the 2015 talk was so good , I am gonna watch this one
@true_tamilan
@true_tamilan 4 жыл бұрын
He is talented and verbose. Thanks man
@martinh9099
@martinh9099 4 жыл бұрын
Really good explanation, many thanks. Couple of points though (1) Passwords should be "salted" prior to hashing (2) SSL is now deprecated, TLS should be used
@clietech
@clietech 4 жыл бұрын
I think the time was too strict to speak about it. but bcrypt by default uses salts. $2a$10$N9qo8uLOickgx2ZMRZoMyeIjZAgcfl7p92ldGxad68LJZdL17lhWy \__/\/ \____________________/\_____________________________/ Alg Cost Salt Hash
@garyhost612
@garyhost612 3 жыл бұрын
🙌
@cientifica9150
@cientifica9150 2 жыл бұрын
Thank you
@azianzheep
@azianzheep 11 ай бұрын
bcrypt automatically generates a random salt and salts the password before hashing
@cientifica9150
@cientifica9150 2 жыл бұрын
I have a question, can somebody help me? In 2:47 he says that for the sake of simplicity for this video he was going to put all the login of the app inside server.js file *but*, he says that we should never do that in the real word. My question is, then what should we do? separate files in modules in JS? or something like that? Sorry if I said something stupid but I'm just starting on this... thank you
@Bloipapp
@Bloipapp 4 ай бұрын
Amazing talk for so many reasons. JWTs are still popular as the next shiny toy and 6 years later only 8,000 views.
@thatguy-tl1gb
@thatguy-tl1gb 5 жыл бұрын
Amazing talk, covered important concepts in a short time.
@nachiketkanore
@nachiketkanore 3 жыл бұрын
Great security tips by a bodybuilder!
@cientifica9150
@cientifica9150 2 жыл бұрын
6:27 how can I visualize this JSON?
@Akshatgiri
@Akshatgiri 4 жыл бұрын
Loved the talk and the presentation. Unfortunate that they cut the time in half. Would've loved to hear more about new auth techniques like auth2.0, open id, authentication with serverless architechtures and JAM stack. Honestly I don't know much about them either, still learning.
@anklebar1
@anklebar1 4 жыл бұрын
top web dev video all time!
@muhammadmughal4258
@muhammadmughal4258 4 жыл бұрын
Sir, you are requested to make some video that elaborates API / web-sockets oAuth and related stuff. i dnt have a programming background, but your video made much of the things easier then easy. :-)
@trailerhaul8200
@trailerhaul8200 3 жыл бұрын
Lots of things are packed together to form a nice presentation. Just like a body builder lol
@arseniotedra4573
@arseniotedra4573 2 жыл бұрын
Good 🌹 morning Sir and to ALL thanks for the business updated God bless to ALL 💕❤️👍✔️👌🥇☺️ the times 💕❤️👍✔️
@karimk8551
@karimk8551 3 жыл бұрын
Wouldn't you be able to add the req.user field manually with something like postman and trick the server into thinking you are a user?
@uwaishalikhan6963
@uwaishalikhan6963 5 жыл бұрын
You have done gr8 job bro.
@danielgospodinow
@danielgospodinow 5 жыл бұрын
Absolutely perfect explanations!
@ep4500
@ep4500 4 жыл бұрын
This is mana from heaven
@alabhyajindal
@alabhyajindal Жыл бұрын
Great talk, thanks!!!
@sevenred2803
@sevenred2803 5 жыл бұрын
Bravo! This guy is a BEAST
@anispathima5845
@anispathima5845 5 жыл бұрын
Clear Explanation... Thank you so much...
@qu4ku
@qu4ku 4 жыл бұрын
beautiful! [this comes from the men that don't use exclamation marks lightly].
@shahidahmads
@shahidahmads 3 жыл бұрын
Learned so much in 30mins!
@omirosvasdaris7697
@omirosvasdaris7697 3 жыл бұрын
Interesting talk.
@tenminutetokyo2643
@tenminutetokyo2643 4 жыл бұрын
Kudos for keeping it short.
@nitreall
@nitreall 3 жыл бұрын
what if you have more than one server? Will the authentication still work?
@mayankramina
@mayankramina 6 жыл бұрын
Great talk!!!
@osta6212
@osta6212 4 жыл бұрын
very helpful session!
@pareshkoli5356
@pareshkoli5356 2 жыл бұрын
brooooooo thank you so much
@FictionsAndIllusions
@FictionsAndIllusions 4 жыл бұрын
Omg, I finally get it! Thanks a ton!!
@chezy8148
@chezy8148 4 жыл бұрын
Let's actually implement that sh*t 😂
@lilyydotdev
@lilyydotdev 4 жыл бұрын
great talk but salting is very important too
@Nickcave1994
@Nickcave1994 4 жыл бұрын
Thanks Rambo Guy!
@prayk11
@prayk11 4 жыл бұрын
Amazing talk!
@IamAWESOME3980
@IamAWESOME3980 4 жыл бұрын
how about basic authentication?
@Ibukundaniel
@Ibukundaniel 4 жыл бұрын
You are the best! Thank you
@rosalyna_24
@rosalyna_24 3 жыл бұрын
i wish if he has a full course
@renanreismartins
@renanreismartins 4 жыл бұрын
What a great content.
@PinguinoSod
@PinguinoSod 5 жыл бұрын
very useful thank you!
@immigrationtime
@immigrationtime 3 жыл бұрын
Hey, look! I only have 30 mins and thats why I’ll spend half of the time describing the toolset
@Enderwolf23
@Enderwolf23 2 жыл бұрын
right..lol
@crystalyun833
@crystalyun833 4 жыл бұрын
he is a chad in developer community
@raykudjie2365
@raykudjie2365 4 жыл бұрын
amazing stuff
@weiyang1678
@weiyang1678 3 жыл бұрын
Is he researching authentication? I think he is preparing to beat me ;)
@OKOK-hm2is
@OKOK-hm2is 3 жыл бұрын
7 minutes in and authentication has not even started i've seen 100 seconds videous about modern authentification methods that cover more info that this one
@aminuabdulsalami4325
@aminuabdulsalami4325 4 жыл бұрын
Awesome...
@techbegginer6271
@techbegginer6271 4 жыл бұрын
you should get 1hr. awesome talk bro
@jgunther3398
@jgunther3398 3 жыл бұрын
this isn't anything you wanted to know about authentication, but is a decent tutorial on node servers, which is kind of the opposite, plus oral potty fixation
@caerulemusic
@caerulemusic Жыл бұрын
7:05 if u know u know
@quirkyquester
@quirkyquester 4 жыл бұрын
This guy rocks!
@divyanshupandey1702
@divyanshupandey1702 3 жыл бұрын
I did the same and it took me 5-6hrs configuring passport.js and then i came here
@matelaszlototh9683
@matelaszlototh9683 5 жыл бұрын
That was awesome!
@vikas9358
@vikas9358 4 жыл бұрын
Miss leading title. Authentication and Web Authentication are 2 different things.
@katerinaboboshko8554
@katerinaboboshko8554 4 жыл бұрын
Thank you!
@abhisekdash8062
@abhisekdash8062 2 жыл бұрын
good
@threeone6012
@threeone6012 5 жыл бұрын
Perfect!
@fun_at_work
@fun_at_work 2 жыл бұрын
That password would have been way more secure if he would have added a second '!'.
@azeyn2050
@azeyn2050 4 жыл бұрын
Awesome!
@SaberOubella
@SaberOubella 7 ай бұрын
great
@yuhao8430
@yuhao8430 5 жыл бұрын
thanks dude!! that's legit!!
@abhisekdash8062
@abhisekdash8062 2 жыл бұрын
checking data replication strategy for youtube
@What_was_wrong_w_jst_our_names
@What_was_wrong_w_jst_our_names 5 жыл бұрын
be my boss
@mohamethseck
@mohamethseck 5 жыл бұрын
Perfect 👌🏽
@sunnysrivastava7575
@sunnysrivastava7575 4 жыл бұрын
Here is the 50 minutes version kzbin.info/www/bejne/n2jSl2NonsiDr7M
@FordExplorer-rm6ew
@FordExplorer-rm6ew 5 жыл бұрын
Thankg u
@joseromeocantiller3168
@joseromeocantiller3168 2 жыл бұрын
More Thanks for your help! We received your information, GOD BLESS, SIR! ISAIAH 41:2,7,25 GOLDSMITH
@cadar8472
@cadar8472 4 жыл бұрын
Gold
@krackytech2344
@krackytech2344 2 жыл бұрын
what a chad
@yassirbenali4333
@yassirbenali4333 4 жыл бұрын
perfect
@probhakarsarkar2430
@probhakarsarkar2430 4 жыл бұрын
♥️♥️♥️
@shallbee.
@shallbee. 4 жыл бұрын
Nice joke about Canadian police :D
@MatthewBowe
@MatthewBowe 3 жыл бұрын
This guy needs a more professional vocabulary.
@galanoth17
@galanoth17 4 жыл бұрын
I don't like it when they start dropping F bombs in a professional talk. You are not chillin with your buddies. Be professional.
@FlorianEagox
@FlorianEagox 4 жыл бұрын
I thought it was a bit awkward as well, but the rest of the talk was fantastic.
@mrdza96
@mrdza96 3 жыл бұрын
Oh shut up you snowflakes...
@Enderwolf23
@Enderwolf23 2 жыл бұрын
eh most programmers I know swear. I didnt even notice he was swearing
@move1649
@move1649 3 жыл бұрын
the yahoo joke is pretty lame
Enceinte et en Bazard: Les Chroniques du Nettoyage ! 🚽✨
00:21
Two More French
Рет қаралды 42 МЛН
Support each other🤝
00:31
ISSEI / いっせい
Рет қаралды 81 МЛН
Мясо вегана? 🧐 @Whatthefshow
01:01
История одного вокалиста
Рет қаралды 7 МЛН
Session Vs JWT: The Differences You May Not Know!
7:00
ByteByteGo
Рет қаралды 290 М.
Secure Your .NET API in 15 Minutes: JWT Authentication Tutorial
15:05
Milan Jovanović
Рет қаралды 25 М.
JWT - JSON Web Token Crash Course (NodeJS & Postgres)
57:01
Hussein Nasser
Рет қаралды 46 М.
NestJS Authentication + Refresh Token With Passport.js
1:25:12
Michael Guay
Рет қаралды 10 М.
An Introduction to PASETO Tokens - Randall Degges
17:14
DevSecCon
Рет қаралды 1,5 М.
What is JWT? JSON Web Tokens Explained (Java Brains)
14:53
Java Brains
Рет қаралды 1 МЛН
Authentication is a developer nightmare
15:58
Tom Delalande
Рет қаралды 61 М.
OAuth 2.0 and OpenID Connect (in plain English)
1:02:17
OktaDev
Рет қаралды 1,8 МЛН
Enceinte et en Bazard: Les Chroniques du Nettoyage ! 🚽✨
00:21
Two More French
Рет қаралды 42 МЛН