How to integrate AzureAD B2C with AWS API Gateway JWT Authorizer?

  Рет қаралды 3,879

Security in Action 101

Security in Action 101

Күн бұрын

Пікірлер: 10
@securityinaction1018
@securityinaction1018 Жыл бұрын
You can download architecture diagram file from github.com/secinaction101/azureadawsapigateway and open the file in draw.io website. Please subscribe to this channel for regular updates kzbin.info/door/EEayyyCrJO94FYlzF0NLTg Thank You for the support.
@pramodudakeri81
@pramodudakeri81 Жыл бұрын
This is super helpful! Thank you very much !! I was looking for something similar. Few queries - What is the difference between App Regitraions & AzureAD B2C? Can I use App Registration instead of AzureAD B2C?
@securityinaction1018
@securityinaction1018 Жыл бұрын
App registration is a configuration within Azure AD or Azure AD B2C. An app registered using App registration represents the client app that wants to use Azure AD B2C as the IdP.
@gvoden
@gvoden 5 ай бұрын
Hi, I don't know why but App Roles are missing from configuration for app registraiton if I am registering the app in Azure B2C. Any tips?
@securityinaction1018
@securityinaction1018 5 ай бұрын
I am not sure. I still see in my azure developer account. If you are not seeing the option to add app roles, try manually modifying the manifest file to add app roles.
@gvoden
@gvoden 5 ай бұрын
I modified the manifest and it worked like a charm
@gvoden
@gvoden 5 ай бұрын
@@securityinaction1018 just a heads-up Microsoft's doc was updated to use the manifest vs app roles, so that has definitely changed but the rest of the steps are the same
@securityinaction1018
@securityinaction1018 5 ай бұрын
Thanks for sharing this detail. When I recorded this video, I remember Microsoft docs talking about modifying manifest instead of adding through the admin console. Since the console option was available, I used it at that point of time. But, looks like modifying manifest file is the right option.
@gayathripalanisamy2781
@gayathripalanisamy2781 Жыл бұрын
Hi I have one doubt, if the token got expire how that aws api gateway will recognize and response.
@securityinaction1018
@securityinaction1018 Жыл бұрын
That should be a 401 unauthorized error. Please refer this docs.aws.amazon.com/apigateway/latest/developerguide/http-api-jwt-authorizer.html. It checks for exp claim.
How to add Keycloak as a OIDC Identity Provider in AWS Cognito?
23:00
Security in Action 101
Рет қаралды 3,2 М.
How to secure SpringBoot REST APIs using AzureAD B2C OAuth2 scopes?
31:34
Security in Action 101
Рет қаралды 4 М.
Spongebob ate Patrick 😱 #meme #spongebob #gmod
00:15
Mr. LoLo
Рет қаралды 20 МЛН
💩Поу и Поулина ☠️МОЧАТ 😖Хмурых Тварей?!
00:34
Ной Анимация
Рет қаралды 2,1 МЛН
Do you choose Inside Out 2 or The Amazing World of Gumball? 🤔
00:19
Когда отец одевает ребёнка @JaySharon
00:16
История одного вокалиста
Рет қаралды 2,3 МЛН
Secure API Gateway using Cognito Authorizer (NEW)
29:51
LoveToCode
Рет қаралды 41 М.
How to configure OAuth 2.0 client credentials flow in Azure Active Directory B2C?
21:17
Using AWS Single Sign-on to Integrate with Azure Active Directory
18:17
Amazon Web Services
Рет қаралды 46 М.
Use JWT Authorizers with Amazon Cognito and API Gateway
13:48
Focus Otter
Рет қаралды 52 М.
How to integrate Java Spring Boot application with AzureAD using OIDC?
32:16
Security in Action 101
Рет қаралды 11 М.
Token Customization in Azure AD - November 2020
54:50
Microsoft 365 Developer
Рет қаралды 9 М.
ACD23-1-02 Machine to Machine Authentication on AWS - Chris Mercer
22:42
Spongebob ate Patrick 😱 #meme #spongebob #gmod
00:15
Mr. LoLo
Рет қаралды 20 МЛН