This is a golden example of how a technical presentation should be. Great job!
@starman9000 Жыл бұрын
Presenter was clear in mind what he is talking! I am able to understand which I failed to uderstand from many other similar content. Thank you.
@mingzus4 жыл бұрын
not shortest one in KZbin, but one of the BEST to explain Oauth ! Thanks you !
@parthsalat3 жыл бұрын
That's coz he made Oauth 2.0
@AnonyoX2 жыл бұрын
One of the best presentations on this topic. Lucid, on-point, and yet moderately detailed. Thank you, Aaron.
@ThePersepolis324 жыл бұрын
I already read some articles, but this was a perfect explanation.
@joeyjoejoo Жыл бұрын
that was an absolutely brilliant tutorial. thanks very much.
@OktaDev Жыл бұрын
You're very welcome! Glad that you enjoyed it.
@FictionsAndIllusions4 жыл бұрын
Thanks for this video. I was curious about how to secure Web APIs using OAuth2.0 and the second half of this talk answered it perfectly.
@sergiocamacho7303 жыл бұрын
Excellent presentation. It wasn't hard at all to watch for a half-hour talk.
@randyhockin24374 жыл бұрын
Excellent presentation Aaron.
@pepsiholix Жыл бұрын
Now that was an exzellent talk!
@beatagozdziaszek81574 жыл бұрын
6:28 Start of the OAuth 2.0 flow
@bdoesbjj4 жыл бұрын
tintuu Why are you laughing? Your comment in not helpful at all.
@santiagocavanna2 жыл бұрын
Thanks for sharing this information. I found it very clear and useful. I am doing some work as IAM Arch and not always it is clear the path.
@JanithKalhara2 жыл бұрын
Simple and clean.
@alirezaamedeo2 жыл бұрын
PKCE is not the replacement of client authentication. It's simply to prove whoever is exchanging code for token is the same guy who requested the code.
@sumitkumarb4u3 жыл бұрын
Very nice presentation. Really helped!
@DilSeSwiss4 жыл бұрын
comprehensive presentation, thanks
@smritisharan-sfdcamplified7 ай бұрын
Nice
@green107014 жыл бұрын
Perfect explanation 10:28
@domaincontroller4 жыл бұрын
Specs are not good tutorials, 20 specs 00:57 the password anti-pattern 02:23 OAuth spec, Sign in with 02:46 OAuth was designed to give access to data, accessing APIs not about identifying the user 04:15 OpenID connect 04:36 OAuth originally created for that third-party app access, first party app as well, gmail actually redirects you to the google OAuth server 06:24 we gonna take a look how OAuth works, from an application point of view 06:39 access token, hotel key 07:57 five roles 08:51 starting with the simplest flow 10:45
@mansimen4 жыл бұрын
Hi, great presentation, the hotel card analogy is quite good. But IMHO, really poor choice of colors for the slides. I'm colorblind and don't see any difference between those arrows that you mentioned in slide at minute 10:39.
@alittleextra28323 жыл бұрын
The world does not revolve around you.
@alirezaamedeo2 жыл бұрын
You may not want to expose scopes of a JWT to the world so reference token will be the only option.
@HenryPan4 жыл бұрын
Is OAuth 2.0 itself secure enough?
@oko27084 жыл бұрын
4:15
@davidharris33914 жыл бұрын
Empirical data, i.e. the past several years of billions (or trillions ?) of transactions using Oauth2 would say 'if used properly, yes'.