Securing Your APIs with OAuth 2.0 - API Days

  Рет қаралды 71,200

OktaDev

OktaDev

Күн бұрын

Пікірлер: 29
@Chris.Plunkett
@Chris.Plunkett 2 жыл бұрын
This is a golden example of how a technical presentation should be. Great job!
@starman9000
@starman9000 Жыл бұрын
Presenter was clear in mind what he is talking! I am able to understand which I failed to uderstand from many other similar content. Thank you.
@mingzus
@mingzus 4 жыл бұрын
not shortest one in KZbin, but one of the BEST to explain Oauth ! Thanks you !
@parthsalat
@parthsalat 3 жыл бұрын
That's coz he made Oauth 2.0
@AnonyoX
@AnonyoX 2 жыл бұрын
One of the best presentations on this topic. Lucid, on-point, and yet moderately detailed. Thank you, Aaron.
@ThePersepolis32
@ThePersepolis32 4 жыл бұрын
I already read some articles, but this was a perfect explanation.
@joeyjoejoo
@joeyjoejoo Жыл бұрын
that was an absolutely brilliant tutorial. thanks very much.
@OktaDev
@OktaDev Жыл бұрын
You're very welcome! Glad that you enjoyed it.
@FictionsAndIllusions
@FictionsAndIllusions 4 жыл бұрын
Thanks for this video. I was curious about how to secure Web APIs using OAuth2.0 and the second half of this talk answered it perfectly.
@sergiocamacho730
@sergiocamacho730 3 жыл бұрын
Excellent presentation. It wasn't hard at all to watch for a half-hour talk.
@randyhockin2437
@randyhockin2437 4 жыл бұрын
Excellent presentation Aaron.
@pepsiholix
@pepsiholix Жыл бұрын
Now that was an exzellent talk!
@beatagozdziaszek8157
@beatagozdziaszek8157 4 жыл бұрын
6:28 Start of the OAuth 2.0 flow
@bdoesbjj
@bdoesbjj 4 жыл бұрын
tintuu Why are you laughing? Your comment in not helpful at all.
@santiagocavanna
@santiagocavanna 2 жыл бұрын
Thanks for sharing this information. I found it very clear and useful. I am doing some work as IAM Arch and not always it is clear the path.
@JanithKalhara
@JanithKalhara 2 жыл бұрын
Simple and clean.
@alirezaamedeo
@alirezaamedeo 2 жыл бұрын
PKCE is not the replacement of client authentication. It's simply to prove whoever is exchanging code for token is the same guy who requested the code.
@sumitkumarb4u
@sumitkumarb4u 3 жыл бұрын
Very nice presentation. Really helped!
@DilSeSwiss
@DilSeSwiss 4 жыл бұрын
comprehensive presentation, thanks
@smritisharan-sfdcamplified
@smritisharan-sfdcamplified 7 ай бұрын
Nice
@green10701
@green10701 4 жыл бұрын
Perfect explanation 10:28
@domaincontroller
@domaincontroller 4 жыл бұрын
Specs are not good tutorials, 20 specs 00:57 the password anti-pattern 02:23 OAuth spec, Sign in with 02:46 OAuth was designed to give access to data, accessing APIs not about identifying the user 04:15 OpenID connect 04:36 OAuth originally created for that third-party app access, first party app as well, gmail actually redirects you to the google OAuth server 06:24 we gonna take a look how OAuth works, from an application point of view 06:39 access token, hotel key 07:57 five roles 08:51 starting with the simplest flow 10:45
@mansimen
@mansimen 4 жыл бұрын
Hi, great presentation, the hotel card analogy is quite good. But IMHO, really poor choice of colors for the slides. I'm colorblind and don't see any difference between those arrows that you mentioned in slide at minute 10:39.
@alittleextra2832
@alittleextra2832 3 жыл бұрын
The world does not revolve around you.
@alirezaamedeo
@alirezaamedeo 2 жыл бұрын
You may not want to expose scopes of a JWT to the world so reference token will be the only option.
@HenryPan
@HenryPan 4 жыл бұрын
Is OAuth 2.0 itself secure enough?
@oko2708
@oko2708 4 жыл бұрын
4:15
@davidharris3391
@davidharris3391 4 жыл бұрын
Empirical data, i.e. the past several years of billions (or trillions ?) of transactions using Oauth2 would say 'if used properly, yes'.
@allyc0des972
@allyc0des972 3 жыл бұрын
It's couldn't care less, not could care less
Everything You Ever Wanted to Know About OAuth and OIDC
33:21
An Illustrated Guide to OAuth and OpenID Connect
16:36
OktaDev
Рет қаралды 614 М.
Молодой боец приземлил легенду!
01:02
МИНУС БАЛЛ
Рет қаралды 2 МЛН
How to Hack OAuth
25:10
OktaDev
Рет қаралды 44 М.
Protecting Your APIs with OAuth
59:25
OktaDev
Рет қаралды 13 М.
OAuth 2.0 explained with examples
10:03
ByteMonk
Рет қаралды 160 М.
OAuth 2.0 and OpenID Connect (in plain English)
1:02:17
OktaDev
Рет қаралды 1,8 МЛН
JSON Web Tokens Suck
53:14
ForwardJS
Рет қаралды 10 М.
5 Best Practices for Securing Your APIs
15:42
Nordic APIs
Рет қаралды 46 М.
Implementing OAuth 2.0 from SCRATCH
24:56
Carberra
Рет қаралды 3,9 М.
OAuth 2.0 & OpenID Connect (OIDC): Technical Overview
16:19
VMware End-User Computing
Рет қаралды 169 М.