A Developer's Guide to WebAuthN

  Рет қаралды 12,099

OktaDev

OktaDev

Күн бұрын

Пікірлер: 14
@agilanrajarathinam6309
@agilanrajarathinam6309 Жыл бұрын
Thanks for the explanation and I have doubts while use webauthn. 1. In smartphone(android) device where the private key are stored can I able to view. 2. Why Bluetooth connection is needed while scanning the QR code to login (authenticate)
@WillJohnsonio
@WillJohnsonio Жыл бұрын
Hey Agilan, great questions! 1. The private key is stored on the devices TPM or Trusted Platform Module and the private key can't be viewed for security concerns. 2. Bluetooth is necessary to ensure the devices are in close proximity to each other
@fallinginthed33p
@fallinginthed33p Жыл бұрын
​​@@WillJohnsonioIt's a cool development that takes the process flow behind hardware security keys like Yubikeys and adapts it to phones. Instead of connecting the phone to a computer using USB like with a typical hardware key, Bluetooth is used because it's more convenient. The key (pun intended) is to have the login computer and authenticating device in physical proximity so someone else in another country can't use your username and password to log in.
@Viviko
@Viviko Ай бұрын
So, what do I actually save on the server and what do I send to the server to verify authentication? I get the flow. Just struggling to condeotuslize the flow from device to server and vise versa.
@conradtwonine9414
@conradtwonine9414 Жыл бұрын
interesting, any actual code implementation that you can demonstrate?
@OktaDev
@OktaDev Жыл бұрын
Thanks for watching our WebAuthn video. You can follow our WebAuthn Developer Labs with any of our client application code samples. WebAuthn with FIDO Security Keys Lab: developer.auth0.com/resources/labs/authentication/webauthn-with-fido-security-keys#introduction WebAuthn with Biometrics Lab: developer.auth0.com/resources/labs/authentication/webauthn-with-biometrics#introduction Client Code Samples: developer.auth0.com/resources/code-samples/spa Please let us know if you have any questions or feedback. Thanks!
@Pinefenario
@Pinefenario 8 ай бұрын
Good explanation. It’s about time websites start implementing webauthn imho.
@sakshi-ok8zu
@sakshi-ok8zu Жыл бұрын
This was super helpful. Thanks!
@WillJohnsonio
@WillJohnsonio Жыл бұрын
You're welcome
@bryantmichael6863
@bryantmichael6863 Жыл бұрын
Can a webapp get webauthn
@p19shelt
@p19shelt 11 ай бұрын
simplewebauthen
@dasfahrer8187
@dasfahrer8187 10 ай бұрын
Solve the key storage limitation (and inability to store keys at all) and it will be useful. Until then, it's just not going to be viable, long-term solution.
@ox3965
@ox3965 Жыл бұрын
Not sure if you get this message, very good video. I have been trying trying to build a web auth that uses yubikeys, for a weeks for university project. Could you help in anyway please, as I am really stuck. 😢
@SIGSEGV1337
@SIGSEGV1337 10 ай бұрын
yeah this dude definitely watch naruto
Everything You Want to Know About WebAuthn
24:06
OktaDev
Рет қаралды 18 М.
A Developer's Guide to SAML
27:47
OktaDev
Рет қаралды 191 М.
To Brawl AND BEYOND!
00:51
Brawl Stars
Рет қаралды 17 МЛН
小丑教训坏蛋 #小丑 #天使 #shorts
00:49
好人小丑
Рет қаралды 54 МЛН
It works #beatbox #tiktok
00:34
BeatboxJCOP
Рет қаралды 41 МЛН
FIDO Promises a Life Without Passwords
9:58
IBM Technology
Рет қаралды 414 М.
Memory Arenas - Explained Simply
5:27
Nic Barker
Рет қаралды 5 М.
An Illustrated Guide to OAuth and OpenID Connect
16:36
OktaDev
Рет қаралды 623 М.
What are Refresh Tokens?! and...How to Use Them Securely
19:29
Adding Salt to Hashing: A Better Way to Store Passwords
18:18
To Brawl AND BEYOND!
00:51
Brawl Stars
Рет қаралды 17 МЛН