OAuth terminologies and flows explained - OAuth tutorial - Java Brains

  Рет қаралды 413,690

Java Brains

Java Brains

Күн бұрын

Пікірлер: 238
@bubut123
@bubut123 3 жыл бұрын
Nobel Prize-winning physicist, Richard Feynman had once said: “You know you have mastered a skill, when you can teach it to a child”. Why? Because it forces yourself to understand the concept at a deeper level and simplify relationships and connections between ideas. Great Job Koushik! Thanks.
@zss123456789
@zss123456789 4 жыл бұрын
*Timestamps* 0:00 Intro 1:34 Term 1: Resource 2:24 Term 2: Resource Owner 3:14 Term 3: Resource Server 3:52 Term 4: Client 5:00 Who has the burden of security? (Ans: Resource Server) 6:51 Term 5: Authorization Server 7:54 OAuth Flow 1 *Authorization* *Code* *Flow* 14:09 OAuth Flow 2: *Implicit* *Flow* 15:50 Drawback of Implicit Flow 18:30 OAuth for authorization between services 19:24 OAuth Flow 3: *Client* *Credentials* *Flow* (for microservices) 22:20 Wrap-up
@melsaied101
@melsaied101 4 жыл бұрын
This is so appreciated 👍👏🤝🙏
@OooohReally
@OooohReally 3 жыл бұрын
23:10 Go rule the world
@OooohReally
@OooohReally 3 жыл бұрын
@Beau Ace Another bot comment "Joined Mar 6, 2021" reporting this account
@ommishra9581
@ommishra9581 3 жыл бұрын
How different it is from SAML
@isaackase4762
@isaackase4762 3 жыл бұрын
you all probably dont give a shit but does any of you know of a tool to log back into an Instagram account..? I somehow forgot my password. I would love any assistance you can give me.
@phuang3
@phuang3 4 жыл бұрын
I just don't understand why some people would thumb down on this tutorial. In fact, all the tutorials from this channel are excellent. I learned a lot from them
@tombaxter2879
@tombaxter2879 3 жыл бұрын
I can't believe anyone would give this a thumbs up! Are you the author's cousin or something?
@phuang3
@phuang3 3 жыл бұрын
@@tombaxter2879 You mean he's got 4771 cousins or something? If you don't like this channel, show us yours.
@tombaxter2879
@tombaxter2879 3 жыл бұрын
@@phuang3 Relax. This particular video was bad, it doesn't mean the whole channel was bad. Whose rule is it that says you can't comment on the quality of a video unless you, yourself have your own channel? Grow up.
@swarnendustudy1792
@swarnendustudy1792 3 жыл бұрын
because they are history student came here to learn computer science
@shenth27
@shenth27 3 жыл бұрын
Some people don't like his accent sadly.
@farhannazmul4902
@farhannazmul4902 4 жыл бұрын
The tutorial is too good to having clearer view on Oauth flows. Hats off to the author
@maxs6803
@maxs6803 4 жыл бұрын
Hands down the best style of introducing technical material, that I have ever seen. Your videos are so easy to follow. I'm glad you start with concepts and examples, before going into the jargon.
@mahesh_kndpl
@mahesh_kndpl 4 жыл бұрын
He made this so simple. He knows the art of teaching.
@harrywang6792
@harrywang6792 3 жыл бұрын
Thank you!!!! I never know what "client" site means until now. There are so many things on the internet, and unfortunately people just assume it's common knowledge and don't bother explain them, which makes the process so much harder and frustrating. Thank you for taking the time
@tark5963
@tark5963 3 жыл бұрын
Client in any concept is the service(person, program, computer, platform) that requests something from some distributed remote server.
@AndresFelipeGonzalezMelendez
@AndresFelipeGonzalezMelendez Жыл бұрын
You are the best java channel out there! great job!
@satanrasool1802
@satanrasool1802 Жыл бұрын
Always... best tutorials from Java Brains.
@immortalveejay
@immortalveejay 5 жыл бұрын
Thanks Kaushik , This series on OAuth2 is amazin
@minhazurrahman8592
@minhazurrahman8592 Жыл бұрын
dhur hala
@kirangem
@kirangem Жыл бұрын
I must thank you for making me understand it in a better, simplified way. Your deep understanding on the topic is adorable. Once, again thank you
@basamnath3021
@basamnath3021 4 жыл бұрын
Amazing explanation. Hope my son in college gets a "resource" (professor) like you. God Bless You
@sumit1234567891011
@sumit1234567891011 2 жыл бұрын
Accidently found one video by Java brains, and this is my fifth video back to back, so additive ( things I understood in past with partial knowledge and getting confused time and again, explained o me here like a baby). I have seen many videos but no one explained like you did. Thanks a ton. Please put a link where views can make some donations if they are happy. I would love to do that
@classawarrior
@classawarrior 5 жыл бұрын
Your style of explanation / teaching is really top-notch! Great work
@bhanuprakash2465
@bhanuprakash2465 2 жыл бұрын
You are a master of many concepts which many people want to learn.Kudos to You Kaushik.
@sambhavsharma5875
@sambhavsharma5875 3 жыл бұрын
You are a lifeSaver Man. Thank You so Much Sir.
@sambitplus
@sambitplus 4 жыл бұрын
Very well explained. One of the best videos that explains OAuth
@awabelmahe9700
@awabelmahe9700 4 жыл бұрын
Man, you have a gift for clearly explaining things, thank you very much for theses great videos.
@luciferbhoi
@luciferbhoi Жыл бұрын
Wow ...trust me i have seen 10+ videos on this topic on KZbin. But the way you are explaining... someone who is from commerce or arts background also will understand everything..😛
@danielhaile9073
@danielhaile9073 2 жыл бұрын
Thanks for making it simple to understand the big concept .
@Vlad_Logvin
@Vlad_Logvin 3 жыл бұрын
Thanks! I'm from Belarus and sometimes to hard to parse bad pronunciation, but yours is very clearly. Very useful explanation, one of the best learning channels!
@kirancs6217
@kirancs6217 2 жыл бұрын
Very good and crystal clear explanation with good analogy. Thanks for sharing this core concept
@alirabee7649
@alirabee7649 6 ай бұрын
Thank you for your great efforts . you are the best to simplify such complex concepts
@madhanseran3764
@madhanseran3764 4 жыл бұрын
This is an awesome explanation. It just had what I wanted to clarify.... Thbskd watching this video. thanks and kudos to you sir
@ameyapatil1139
@ameyapatil1139 4 жыл бұрын
Respect for making such a video ! Superb skill of teaching.
@Timbaktu640
@Timbaktu640 3 жыл бұрын
Explained very well. Thank you for clearing this concept
@mohammedsardar3779
@mohammedsardar3779 5 жыл бұрын
Thanks Koushik. Got to learn more about OAuth in meaningful and useful way. Please keep teaching more.
@birqan
@birqan 5 жыл бұрын
Thank you very much again for this clean explanation. I appreciate you very much.
@kundankumarpathak7924
@kundankumarpathak7924 2 жыл бұрын
Great stuff man You helped clear my interview. Got the offer from company 🔥
@atulsurjuse2916
@atulsurjuse2916 Жыл бұрын
Excellent explanation in details..!! Thank you..:)
@sanyukta99
@sanyukta99 Жыл бұрын
Great explanation! Thank you dudee✨
@clement1370
@clement1370 3 жыл бұрын
Great job, with you its easy to understand !
@sriplano748
@sriplano748 Жыл бұрын
Brilliant explanation 💯💯
@JeremiBenquar1995
@JeremiBenquar1995 4 жыл бұрын
Finally found an Indian that makes sense :) Thank you! Subscribed.
@shreyasdeshpande1064
@shreyasdeshpande1064 5 жыл бұрын
Crystal clean concepts as always :) Thanks Koushik!
@saeidkazemi7021
@saeidkazemi7021 4 жыл бұрын
Hey Guy
@akashnag3879
@akashnag3879 4 жыл бұрын
best explanation of oauth. thank you very much
@shobhitbaluni1441
@shobhitbaluni1441 3 жыл бұрын
You made this topic very easy to understand.. nice 👌
@rajeevg4683
@rajeevg4683 5 жыл бұрын
Thanks Kaushik. Amazing video with the right set of analogies used at the right place. Kudos. 👍
@abukasozi295
@abukasozi295 5 жыл бұрын
Amazing lesson JB once AGAIN..great stuff!!
@doingsneakypeakylike
@doingsneakypeakylike 3 жыл бұрын
Your videos are a blessing! Thank you!
@conaxlearn8566
@conaxlearn8566 4 жыл бұрын
Love the way the topic is presented!
@praveenp4221
@praveenp4221 2 жыл бұрын
Loved your awesome explanation!!
@suryaprakashnayak7263
@suryaprakashnayak7263 5 жыл бұрын
Superb Koushik. Really helpful. Thaks again.
@jafarimamaliyev1736
@jafarimamaliyev1736 Жыл бұрын
You are amazing bro. Thank you for everything
@rajeewvishvakarma6974
@rajeewvishvakarma6974 3 жыл бұрын
awesome tutorial !!! It got a great understanding on this topic and it clarifies my doubts too. thank you.
@rajkhare5949
@rajkhare5949 3 жыл бұрын
wow...very good explanations...i really enjoyed your teaching style!!..Thanks for making such a good efforts!
@solomonrajkumar5537
@solomonrajkumar5537 4 жыл бұрын
I really loved it... the way you explained and it is clear and emphasizing examples !!!
@sainathpatil6893
@sainathpatil6893 3 жыл бұрын
Excellent explanation, before this video series, i always afraid about Spring Security. many thanks
@ashwinihegde1882
@ashwinihegde1882 3 жыл бұрын
Amazing presentation skills 👍
@PriyeshMishra1
@PriyeshMishra1 5 жыл бұрын
Thanks Kaushik , was eagerly waiting for this video
@yinebebtariku1617
@yinebebtariku1617 2 жыл бұрын
great respect, It is an easy to start tutorial.
@khalidal-reemi3361
@khalidal-reemi3361 2 жыл бұрын
very nice video. Doupts are cleared. Subscribed and liked. 👍
@DANIELMADHURE
@DANIELMADHURE 10 ай бұрын
I think this is one of the best explanations so far. Is there a similar video on SAML and OIDC flow on your channel?
@AP-sb3vl
@AP-sb3vl 3 жыл бұрын
Thanks for the effort, very well explained.
@ingdabit
@ingdabit 3 жыл бұрын
Great job. Thanks a lot for making this video.
@manish4637
@manish4637 5 ай бұрын
Love the explanation and teaching
@TarunKumarSaraswat
@TarunKumarSaraswat 3 жыл бұрын
Wow, amazing explanation 🙏
@ayoolajohn
@ayoolajohn 4 жыл бұрын
This explanation is amazing. Thanks!
@codeblooded
@codeblooded 5 жыл бұрын
Awesome video, thanks !! Can you also cover concept of challenge in OAuth, and how enterprise SSO works with OAuth.
@lts8683
@lts8683 3 жыл бұрын
Thanks very much 🥰. Please make others vedio about spring boot very very very advanced
@vaibhavsharma7055
@vaibhavsharma7055 4 жыл бұрын
Thanks Kaushik for such a wonderful video very clearly explained like you always do. I just wanted to know why implicit flow is less secured?? although in both kind of flows(authorization and implicit flow) client application has access token which can be used to access the protected resource from resource server.
@talesara74
@talesara74 3 жыл бұрын
Nicely explained. Just one point to add..the exchange of token in authorization flow happens from a server to a token end point. The call is not from browser.
@gagangowda9928
@gagangowda9928 3 жыл бұрын
You, sir, are a legend.
@jingyuchang1885
@jingyuchang1885 2 жыл бұрын
This is a great tutorial. Thanks
@irfansiddiqui9458
@irfansiddiqui9458 3 жыл бұрын
Very well explained, thanks
@juliusarieskannehjr2172
@juliusarieskannehjr2172 2 жыл бұрын
Very nice introduction sir. I love your teachings. It helps me so much in understanding complex concepts which seems very difficult to me before. Sir, as honest request, can you please teach the implementation (demo) on the three flows you mentioned in this tutorial. Please sir👏 And thanks so much for these lessons.
@natiusjr
@natiusjr 2 жыл бұрын
very nice tutorial, thanks so much
@nishant07kumar
@nishant07kumar 4 жыл бұрын
it will be great if you start a series on SOLID and Design Pattern in Java/any oops language. I know there are lots of material out there on internet related to these but I believe your way of teaching style will help out lots of ppl. and if you do please try to make each SOLID principle example not related to each topic. Thanks
@gayathirimahalingam3867
@gayathirimahalingam3867 3 жыл бұрын
The idea of picturizing the concepts and telling a story to explain the concepts is extremely helpful and captivating sir! Thanks a lot! I derive immense sense of satisfaction on viewing your videos. Any such videos on docker and kubernetes please?
@staypositive7913
@staypositive7913 2 жыл бұрын
Dude knows how to teach!
@jayantaghosh7678
@jayantaghosh7678 4 жыл бұрын
Awesome Explanation !!
@roiunger7796
@roiunger7796 4 жыл бұрын
You are a supreme teacher!
@karenhearthart1491
@karenhearthart1491 18 күн бұрын
best explanation for me
@elephant742
@elephant742 5 жыл бұрын
Hi Kaushik. Thanks a lot for providing such great content. You are doing great service to the community. Can you please release few videos on saml as well ? What is saml and how does it differ from oauth and how to implement it using spring boot .
@indiansoftwareengineer4899
@indiansoftwareengineer4899 3 жыл бұрын
Example of Valet is awesome...
@deniscordoni9950
@deniscordoni9950 4 жыл бұрын
Thank you, thank you, thank you for your wonderful explanation! I have a question about the authorization code flow: in the step 5 the authorization server sends the authorization code directly to the client, while searching on the web I found that the authorization code seems to be sent to the user which then gives it to the client that exchanges it with the authorization server for the access token: is it correct? Maybe you didn't mention this extra step in order to keep the explanation simple, but it would help me to better understand the difference between the authorization code flow and the implicit flow
@savitha6946
@savitha6946 2 жыл бұрын
All Java brains tutorials are outstanding 👍
@rashmisingh2894
@rashmisingh2894 4 жыл бұрын
Thank you so much for explaining it so beautifully
@mohamedbasuney8871
@mohamedbasuney8871 5 жыл бұрын
Hello, Thank you for your great efforts, could you please cover sso with active Directory and Apache server ?
@kanishkumar6176
@kanishkumar6176 4 жыл бұрын
your tutorials are awesome ....
@MickBisignani
@MickBisignani 4 жыл бұрын
Excellent content! Kudos my friend
@AshisRaj
@AshisRaj 4 жыл бұрын
Superb explanation
@senburbensgaming
@senburbensgaming 4 жыл бұрын
Thanks for the tutorial. Please make another one on OpenID Connect protocol.
@java3711
@java3711 5 жыл бұрын
Thank you sir, could you please cover open id connect as well.
@MrNSK2000
@MrNSK2000 3 жыл бұрын
Excellent tutorial!!
@MrVipulLal
@MrVipulLal 2 жыл бұрын
Well explained. Thanks!
@cdhebar
@cdhebar 4 жыл бұрын
Great style to explain!
@dictatorts
@dictatorts 2 жыл бұрын
The main point missed in 10:54 is that Auth token goes through the resource owner browser while Access token does not. So the resource owner never sees the access token in the Authorization code flow
@LuisGonzalez-dq4bg
@LuisGonzalez-dq4bg 3 жыл бұрын
You are the BEST!
@andrewbutz5590
@andrewbutz5590 5 жыл бұрын
Thanks, very helpful video! A few questions on the third flow, Client Credentials: 1. You mention that micro service 2 has an authentication server. But in the terminology we only talked about an authorization server--is this indeed a different thing, or did you mean to say authorization and not authentication? 2. In the second step, after MS1 goes to the MS2 Auth server, it receives an access token for, you say, only the API calls that it should have access to. But how does the auth server know what MS1 should have access to? My guess here is that this is indeed an authentication server, and that the server is meant to know ahead of time who MS1 is and what kind of access it should have, and that this is what is meant by a super trustworthy client, but I'd like to confirm if this is correct.
@yasharkhodaghadir5338
@yasharkhodaghadir5338 3 жыл бұрын
Describing Oauth 3 base workflows is good.
@debabhishek
@debabhishek 4 жыл бұрын
I am little bit confused who use of 2nd key will make it more secure. .. from first key I get the second key , if first key is insecure then can one can grab it and get the 2nd key .. o r it is just that from first key you have to get the 2nd key only 1 and in very short time, something like this. First key also can be get transferred to via https, so how it becomes insecure ?
@nasrhussain9061
@nasrhussain9061 4 жыл бұрын
Abhishek Deb look up asymmetrical key encryption videos to know how they are secured.
@AdityaKumar-nu4hu
@AdityaKumar-nu4hu 4 жыл бұрын
Actually the auth code is issued to the resource owner & the resource owner passes that to client to get the access token. That's why the oauth flow 1 is more secured than the implcit flow
@dikshitrajkhowa
@dikshitrajkhowa 4 жыл бұрын
Amazing explanation
@ankitchoudhary197
@ankitchoudhary197 3 жыл бұрын
if oauth was poetry it would have been this tutorial ♥♥
@suveenvundavalli
@suveenvundavalli 4 жыл бұрын
At 21:48 will microservice 2 check the token from microservice 1 with Auth Server?
@yasharrahvar5923
@yasharrahvar5923 4 жыл бұрын
Thank you for this. What is the best way to store the access token, refresh token, ... in your node layer for later to use? How to know if the user is still logged in so we don't ask them for credentials if they close the browser?
@petsfunstation3271
@petsfunstation3271 3 жыл бұрын
Awesome Video as usual from Kaushik. One thing just want to clarify a point (21:45) Micro service 2 which does not know to validate a generated OAUTH by AUTH server, so it should call a AUTH server to validate a provided access token by MS1 is valid or not, if valid it will serve the purpose of a call. please correct me if i'm wrong. thank you.
@venkatakuna924
@venkatakuna924 Жыл бұрын
Thank you very much for all the videos and well taught. Can you please post videos on spring security form validations like account locked and account expired. Thans in advance
@sciab3674
@sciab3674 10 ай бұрын
thanks brother, good tutorial
@swarajgupta3087
@swarajgupta3087 2 жыл бұрын
Thanks for this brilliant tutorial. I had question though why did Client send AUTH token back to the Authorization server to get that ACCESS token in Flow-1?
@nareshkumar894
@nareshkumar894 4 жыл бұрын
I Like your OAuth explanation video. Great work..... :) Can you upload a video regarding Open ID Connect ??
What is JWT? JSON Web Tokens Explained (Java Brains)
14:53
Java Brains
Рет қаралды 1 МЛН
I Sent a Subscriber to Disneyland
0:27
MrBeast
Рет қаралды 104 МЛН
Jaidarman TOP / Жоғары лига-2023 / Жекпе-жек 1-ТУР / 1-топ
1:30:54
OAuth 2.0 and OpenID Connect (in plain English)
1:02:17
OktaDev
Рет қаралды 1,8 МЛН
What is the structure of a JWT - Java Brains
17:46
Java Brains
Рет қаралды 405 М.
What is OAuth really all about - OAuth tutorial - Java Brains
10:56
Microservices explained - the What, Why and How?
18:30
TechWorld with Nana
Рет қаралды 900 М.
Spring Boot + Spring Security + JWT from scratch - Java Brains
39:29
Top 25 Microservice Interview Questions Answered - Java Brains
39:54
Everything You Ever Wanted to Know About OAuth and OIDC
33:21
How Prometheus Monitoring works | Prometheus Architecture explained
21:31
TechWorld with Nana
Рет қаралды 1 МЛН
I Sent a Subscriber to Disneyland
0:27
MrBeast
Рет қаралды 104 МЛН