Protecting Your APIs with OAuth

  Рет қаралды 13,363

OktaDev

OktaDev

Күн бұрын

Пікірлер: 9
@chrise202
@chrise202 4 жыл бұрын
Hi Aaron you've mention in various videos about SPA's and JS/Angular apps hosted on CDN's that they should use Auth Code + PKCE. But theres no "back channel" for SPA's. Does this mean front channel will be used? Apart from getting the token by a POST rather than fragment or queryString, are there any other advantages in Auth Code over Implicit?
@harrylyod3402
@harrylyod3402 2 жыл бұрын
loved it thanks for the explanation.
@patrickm9953
@patrickm9953 5 жыл бұрын
My cats love Oauth 2.0 !
@codedynamics1
@codedynamics1 3 жыл бұрын
thanks Arron, ive subbed ;)
@codingexpedition4625
@codingexpedition4625 4 жыл бұрын
I have a hard time separating idToken and accessToken, can you help me with the following: The token shown in the video at kzbin.info/www/bejne/bpSUhIKrhJmghsU, includes both a userId and access scopes. Am I right to say that a token which both includes the userId and access scopes is an "idToken"? (Cause pure oauth access_tokens only include scopes but no user info)
@beatagozdziaszek8157
@beatagozdziaszek8157 4 жыл бұрын
Access token authorizes access to some server resources. They are not intended to carry information about the user. They simply allow access to certain defined server resources. ID token contains information about a user and their authentication status. It can be used by your client both for authentication and as a store of information about that user.
@domaincontroller
@domaincontroller 4 жыл бұрын
01:59 spec like legal contract
@samanthaferguson6018
@samanthaferguson6018 4 жыл бұрын
01:59 spec like legal contract
@samanthaferguson6018
@samanthaferguson6018 4 жыл бұрын
01:59 spec like legal contract
Protect Your APIs with OAuth | Developer Day 2021 Labs
1:15:47
Securing Your APIs with OAuth 2.0 - API Days
31:36
OktaDev
Рет қаралды 71 М.
Гениальное изобретение из обычного стаканчика!
00:31
Лютая физика | Олимпиадная физика
Рет қаралды 4,8 МЛН
How to treat Acne💉
00:31
ISSEI / いっせい
Рет қаралды 108 МЛН
Правильный подход к детям
00:18
Beatrise
Рет қаралды 11 МЛН
[Webinar] OAuth and OpenID Connect in Plain English
1:01:55
OktaDev
Рет қаралды 21 М.
How to Hack OAuth
25:10
OktaDev
Рет қаралды 44 М.
What is JWT? JSON Web Tokens Explained (Java Brains)
14:53
Java Brains
Рет қаралды 1 МЛН
Secure Integrations with OAuth 2.0 JWT Bearer Flow
18:36
Salesforce Developers
Рет қаралды 424
OAuth: When Things Go Wrong
43:58
OktaDev
Рет қаралды 26 М.
Everything You Ever Wanted to Know About OAuth and OIDC
33:21
OAuth all the Things! What is OAuth 2.0?
53:12
OktaDev
Рет қаралды 15 М.
Spring Tips: The Spring Authorization Server
22:21
SpringDeveloper
Рет қаралды 21 М.
Exploring OAuth 2.0: Must-Know Flows Explained
12:22
Code and Stuff
Рет қаралды 2 М.
Гениальное изобретение из обычного стаканчика!
00:31
Лютая физика | Олимпиадная физика
Рет қаралды 4,8 МЛН