Protecting Your APIs with OAuth

  Рет қаралды 12,891

OktaDev

OktaDev

Күн бұрын

Learn how to use OAuth 2.0 to secure access to your APIs-and the common API mistakes you might be making.
Resources mentioned in the webinar:
* OAuth 2.0 Simplified book: oauth2simplified.com
* OAuth community website: oauth.net/2/
* VIDEO: What's going on with the Implicit Flow? • What's going on with t...
* Is the Implicit Flow dead? developer.okta.com/blog/2019/...
* OAuth Security Best Current Practice: oauth.net/2/oauth-best-practice/
* Rich Authorization Requests: oauth.net/2/rich-authorizatio...
---------------------------------------------------------------------------------------------------------------------------
Okta is a developer API service that stores user accounts for your web apps, mobile apps, and APIs.
* Sign up for Okta for free at developer.okta.com/signup/
* For more info visit us at developer.okta.com/
* Developer Blog: developer.okta.com/blog/
* Follow us on Twitter: / oktadev
* Follow us on FB: / oktadevelopers
* Follow us on LinkedIn: / oktadev

Пікірлер: 9
@harrylyod3402
@harrylyod3402 Жыл бұрын
loved it thanks for the explanation.
@chrise202
@chrise202 4 жыл бұрын
Hi Aaron you've mention in various videos about SPA's and JS/Angular apps hosted on CDN's that they should use Auth Code + PKCE. But theres no "back channel" for SPA's. Does this mean front channel will be used? Apart from getting the token by a POST rather than fragment or queryString, are there any other advantages in Auth Code over Implicit?
@patrickm9953
@patrickm9953 4 жыл бұрын
My cats love Oauth 2.0 !
@codedynamics1
@codedynamics1 2 жыл бұрын
thanks Arron, ive subbed ;)
@samanthaferguson6018
@samanthaferguson6018 3 жыл бұрын
01:59 spec like legal contract
@codingexpedition4625
@codingexpedition4625 4 жыл бұрын
I have a hard time separating idToken and accessToken, can you help me with the following: The token shown in the video at kzbin.info/www/bejne/bpSUhIKrhJmghsU, includes both a userId and access scopes. Am I right to say that a token which both includes the userId and access scopes is an "idToken"? (Cause pure oauth access_tokens only include scopes but no user info)
@beatagozdziaszek8157
@beatagozdziaszek8157 4 жыл бұрын
Access token authorizes access to some server resources. They are not intended to carry information about the user. They simply allow access to certain defined server resources. ID token contains information about a user and their authentication status. It can be used by your client both for authentication and as a store of information about that user.
@domaincontroller
@domaincontroller 3 жыл бұрын
01:59 spec like legal contract
@samanthaferguson6018
@samanthaferguson6018 3 жыл бұрын
01:59 spec like legal contract
How to Hack OAuth
25:10
OktaDev
Рет қаралды 43 М.
Everything You Ever Wanted to Know About OAuth and OIDC
33:21
لقد سرقت حلوى القطن بشكل خفي لأصنع مصاصة🤫😎
00:33
Cool Tool SHORTS Arabic
Рет қаралды 29 МЛН
Useful gadget for styling hair 🤩💖 #gadgets #hairstyle
00:20
FLIP FLOP Hacks
Рет қаралды 11 МЛН
Securing Your APIs with OAuth 2.0 - API Days
31:36
OktaDev
Рет қаралды 70 М.
Stop, Intel’s Already Dead!
13:47
Linus Tech Tips
Рет қаралды 465 М.
What's New With OAuth and OIDC?
32:35
OktaDev
Рет қаралды 47 М.
OAuth: When Things Go Wrong
43:58
OktaDev
Рет қаралды 26 М.
Spring Tips: The Spring Authorization Server
22:21
SpringDeveloper
Рет қаралды 16 М.
[Webinar] OAuth and OpenID Connect in Plain English
1:01:55
OktaDev
Рет қаралды 21 М.
What is JWT? JSON Web Tokens Explained (Java Brains)
14:53
Java Brains
Рет қаралды 1 МЛН
An Illustrated Guide to OAuth and OpenID Connect
16:36
OktaDev
Рет қаралды 573 М.
Authentication as a Microservice
50:26
Oracle Developers
Рет қаралды 215 М.
Nokia 3310 top
0:20
YT 𝒯𝒾𝓂𝓉𝒾𝓀
Рет қаралды 4,4 МЛН
Yanlışlıkla Telefonumu Parçaladım!😱
0:18
Safak Novruz
Рет қаралды 2,1 МЛН
Как противодействовать FPV дронам
44:34
Стратег Диванного Легиона
Рет қаралды 123 М.
Bluetooth connected successfully 💯💯
0:16
Blue ice Comedy
Рет қаралды 2 МЛН
iPhone socket cleaning #Fixit
0:30
Tamar DB (mt)
Рет қаралды 19 МЛН