Protect an API in Azure API Management using OAuth - Step-by-Step Tutorial

  Рет қаралды 29,829

Sri Gunnala - Tech Talks

Sri Gunnala - Tech Talks

Күн бұрын

Пікірлер: 39
@CyberJuke5
@CyberJuke5 Ай бұрын
I've never leaned how this works in practice, kudos for this nice vid!
@KrisMeister
@KrisMeister Жыл бұрын
This was quick but good. I have used Oauth plenty as a developer, but have never setup it up with Azure.
@merovingian8853
@merovingian8853 Жыл бұрын
Perfect! Loved the fact this this has clear explanation of what is being registered in AD and why. Thanks! helped me in setting up APIM.
@srigunnala
@srigunnala Жыл бұрын
I am glad you found it helpful! Cheers, Sri!
@kendeanon3171
@kendeanon3171 Ай бұрын
Thank you it helped with my project!
@srigunnala
@srigunnala Ай бұрын
Glad it helped you!!
@dheeraj0076
@dheeraj0076 Жыл бұрын
short and sweet demo with precise steps. Thank you :)
@srigunnala
@srigunnala Жыл бұрын
I am gland you liked it. Thanks, Sri!
@bekkur81
@bekkur81 4 ай бұрын
Simply amazing! You have helped so much on a tight deadline!
@srigunnala
@srigunnala 4 ай бұрын
I am glad it helped you!
@stergiazotali2282
@stergiazotali2282 Жыл бұрын
Sweet and short! It helped me resolved my task!!
@srigunnala
@srigunnala Жыл бұрын
Thank you!
@smellbow
@smellbow 3 ай бұрын
Great video, really helped me understand the process and setup a simple demo api with oauth i can build upon.
@bartleyrob
@bartleyrob Жыл бұрын
very to the point thanks !
@phenomenal325
@phenomenal325 2 ай бұрын
Can't you bypass a pim if you get the function app URL, what's protecting it at that level?
@satyakarri9277
@satyakarri9277 9 ай бұрын
Great video. Thanks for spending time to put it together.
@DacarSoft
@DacarSoft Жыл бұрын
Thanks, great video
@srigunnala
@srigunnala Жыл бұрын
Thank you!
@mannyb4265
@mannyb4265 7 ай бұрын
Very good guide. Thank you.
@renanpinheiro1688
@renanpinheiro1688 8 ай бұрын
Thank you very much for your video, but I had a question: If I have more than one customer wanting to use my api, do I always need to create a new app for them to access? If so, how do I dynamically add a new scope in APIM policies?
@samithafernando6432
@samithafernando6432 Жыл бұрын
Is there a way to use another identity provider such as Okta or Auth0 and perform OIDC flow?
@amiitdas
@amiitdas Жыл бұрын
@Sri Gunnala- Hi Sri Gunnala, I am able to generate the access token by configuring this and also added the jwt-validation policy in inbound request of the api to protect it. The problem is even though I have added the aut token as bearer, it shows invalid auth token error. Do I need to make any configuration related settings in apim itself for open-id connect
@kesavprakash9580
@kesavprakash9580 Жыл бұрын
same for me got any solution?
@sumitsandhir5112
@sumitsandhir5112 10 ай бұрын
Hi Please remove api:// from the scope while adding it inside name value section. Then try again, I hope it works.
@huskyanimal3888
@huskyanimal3888 8 ай бұрын
@@sumitsandhir5112 Still doesn't work for me, any solution else ?
@atulonweb1
@atulonweb1 5 ай бұрын
Thanks buddy... but what about refresh token, how that will be generated and validated
@dhanasekarapandiansrinivas4542
@dhanasekarapandiansrinivas4542 Жыл бұрын
Interesting.. is it possible to protect only few endpoints which path starts with some prefix? for example lets say /public/* are unprotected and /protected/api/* are all protected
@srigunnala
@srigunnala Жыл бұрын
Hello, Thanks for checking my video. You can simply separate them by product and apply policies at product-level
@cloudbaud7794
@cloudbaud7794 29 күн бұрын
Can products then have hierarchy
@dotnet8925
@dotnet8925 5 ай бұрын
quick and informative
@SupreetaPoojary-s4d
@SupreetaPoojary-s4d Жыл бұрын
Hi @Sri Gunnala, thanks for the video. I have one doubt. If we can authentication in function app itself, then why do we need to configure Api management service?
@MarkoVukovic0
@MarkoVukovic0 Жыл бұрын
This is for authorization, not authentication.
@Ashok_mukkara
@Ashok_mukkara Жыл бұрын
I don't want to supply client secret in client scripts ... we have thousands of devices call APIs through APIM. I don't want share client secret in devices
@LaxmideviMule
@LaxmideviMule Жыл бұрын
Great video! I want to secure powerautomate when a http request is recieved flow through api management could you please do a video on this as its not available in the entire internet.
@kotisadhu8410
@kotisadhu8410 8 ай бұрын
Hi Sri, Can we apply SharePoint permissions to the azure app and authenticate the SharePoint api?
@adityakalburgi1548
@adityakalburgi1548 Жыл бұрын
I am getting security recommendation as API endpoints in azure api management should be authenticated. I have openai as backend & I dont want to use Azure AD. How should I resolve this issue using other self service setup other than Azure AD. Can you please guide me on this?
@mediocre.climber
@mediocre.climber Жыл бұрын
Given that I know the url to the backend function, what stops me from calling it directly?
@ianwanjala8621
@ianwanjala8621 11 ай бұрын
how does this work in the dev portal?
Import OData API into Azure API Management | OData API Type in Azure API Management
7:55
Azure API Management Deep Dive
1:10:15
John Savill's Technical Training
Рет қаралды 26 М.
Какой я клей? | CLEX #shorts
0:59
CLEX
Рет қаралды 1,9 МЛН
Their Boat Engine Fell Off
0:13
Newsflare
Рет қаралды 15 МЛН
Coding Shorts: Using Azure Entra ID to Protect Your APIs
19:22
Shawn Wildermuth
Рет қаралды 6 М.
API Authentication with OAuth using Azure AD
26:35
Azure Power Lunch
Рет қаралды 130 М.
OAuth 2.0 and OpenID Connect (in plain English)
1:02:17
OktaDev
Рет қаралды 1,8 МЛН
OAuth 2.0 Authorization code grant flow with Azure AD
21:05
Jeevan B Manoj
Рет қаралды 9 М.
Protect your APIs in API Management with Azure AD
16:55
Hussein Awad
Рет қаралды 6 М.
Protect APIs in API Management using Azure Active Directory
30:55
Azure Power Lunch
Рет қаралды 20 М.
Get started with OAuth 2.0 On-Behalf-Of flow | Microsoft Entra ID
15:55
Microsoft Security
Рет қаралды 9 М.
Secure your API program with Azure API Management
1:12:41
TechTrain Mechelen
Рет қаралды 14 М.