Explain it to Me Like I’m 5: Oauth2 and OpenID

  Рет қаралды 72,235

SpringDeveloper

SpringDeveloper

Күн бұрын

Пікірлер: 32
@zoladkow
@zoladkow 3 жыл бұрын
@33:20 i'd say that a wrist band is the analog of an access token (you can go out and back in to the party) while for an id token that would be a badge (name & photo, etc)... 🙃
@saravanan-subramanian
@saravanan-subramanian 2 жыл бұрын
Succinct and yet so illustrative! Learnt a thing or two about technical presentations too! Great presentation and presenter!
@igorilievski6634
@igorilievski6634 3 жыл бұрын
Insanely good. I was already familiar with this concepts, but now I actually can communicate them to nontechnical personal. Great presentation!
@KeyserTheRedBeard
@KeyserTheRedBeard 3 жыл бұрын
neat upload SpringDeveloper. I crushed that thumbs up on your video. Keep on up the really good work.
@ec9386
@ec9386 2 жыл бұрын
33:15 Why is the ticket booth is called authorization server? It checks your identity, so it should be authentication, right? Please correct me if my understanding is wrong, thanks!
@RaviYasas
@RaviYasas 3 жыл бұрын
Nice explanation !!!
@abayansal
@abayansal 2 жыл бұрын
fantastic explanation of oauth and openid!!!
@alexauto4578
@alexauto4578 2 жыл бұрын
This is very useful even if I am a little bit above 5 :)
@richardlanglois5183
@richardlanglois5183 4 жыл бұрын
Great presentation!
@janigerud
@janigerud 2 жыл бұрын
Really great explanation!!! Big thanks for making it
@peternagy3654
@peternagy3654 10 ай бұрын
The speaker explains: OAuth2 focusing on what a person can do, not who that person is. Later he tells, OIDC is extension of OAuth2 which implements the authentication, or identity. OIDC focus is to prove who someone, not what they can do. Am I the only one feel confused? Please correct me if I'm wrong, but in the original OAuth2 (without the OIDC extension) authenticating the user was the authorization-server responsibility. Based on the successful authentication, it could determine the authorities of the user. These authorities (stored in the issued token) provided information to the underlying services to make authorization related decisions. So what the OIDC add to this flow? What is the purpose of the separated access and id token. What problem this separation solves? What should we store on each and when should we use them? Can you please explain that like I'm 40+ year old, no need to lower down that much.
@numankaraaslan
@numankaraaslan 4 жыл бұрын
Yep, i am a 5 year old because this worked for me :) Thanks.
2 жыл бұрын
Great talk!
@sergiogomez189
@sergiogomez189 3 жыл бұрын
do you have any example using : (Client Initiated Backchannel Authentication, keycloak and spring boot) please
@alive-awake
@alive-awake 2 жыл бұрын
Why is AOL making me agree to these terms for my e-mail account?
@TimBee100
@TimBee100 4 жыл бұрын
Can't the bearer token be of JWT format?
@IvanRandomDude
@IvanRandomDude 4 жыл бұрын
It can be of any format. OAuth specification doesn't define format of the tokens. You can generate your own tokens if you want.
@veroniquenollet7718
@veroniquenollet7718 3 жыл бұрын
Where can I get the presentation so I can click the links? thanks!
@veroniquenollet7718
@veroniquenollet7718 3 жыл бұрын
I found it. SOLVED!
@tuacademiadeinformatica2542
@tuacademiadeinformatica2542 2 жыл бұрын
@@veroniquenollet7718 ¿where is it??
@alive-awake
@alive-awake 2 жыл бұрын
I guess i need it explained to me as if I was a 2 yr old.
@evgeniyrymko8520
@evgeniyrymko8520 Жыл бұрын
It's top!👍
@ykli1399
@ykli1399 3 жыл бұрын
is slideshare broken? i can't open the slides :(
@idealdev7945
@idealdev7945 3 жыл бұрын
Awesome!
@AjayKumar-fd9mv
@AjayKumar-fd9mv Жыл бұрын
Thanks
@dongshengzhang4105
@dongshengzhang4105 2 жыл бұрын
Which 5-year-old kid can stand for almost 50 minutes of lecture???
@randomlyswatching9481
@randomlyswatching9481 Жыл бұрын
😂
@coolkoala282
@coolkoala282 Жыл бұрын
🤣
@poloolo69
@poloolo69 7 ай бұрын
goat
@vidsjust8349
@vidsjust8349 2 жыл бұрын
boaring
@MrMeMyselfMe
@MrMeMyselfMe 3 жыл бұрын
Awesome presentation!
Spring Security Patterns
54:26
SpringDeveloper
Рет қаралды 28 М.
Do’s and Don’ts: Avoiding First-Time Reactive Programmer Mines
58:38
VIP ACCESS
00:47
Natan por Aí
Рет қаралды 28 МЛН
Леон киллер и Оля Полякова 😹
00:42
Канал Смеха
Рет қаралды 4,6 МЛН
Мясо вегана? 🧐 @Whatthefshow
01:01
История одного вокалиста
Рет қаралды 7 МЛН
Getting Started with Spring Authorization Server
54:21
SpringDeveloper
Рет қаралды 42 М.
Security Patterns for Microservice Architectures
40:30
SpringDeveloper
Рет қаралды 24 М.
Spring Cloud Gateway for Stateless Microservice Authorization
36:32
SpringDeveloper
Рет қаралды 42 М.
Multi-tenancy OAuth with Spring Security 5.2
1:11:23
SpringDeveloper
Рет қаралды 31 М.
Securing Microservices with Spring Cloud Security
1:29:52
SpringDeveloper
Рет қаралды 100 М.
Spring Tips: The Spring Authorization Server
22:21
SpringDeveloper
Рет қаралды 20 М.
Spring for Architects
59:46
SpringDeveloper
Рет қаралды 27 М.
Securing OAuth 2.0 Resources in Spring Security 5.0
1:11:14
SpringDeveloper
Рет қаралды 50 М.
Introduction to Spring Cloud
52:12
SpringDeveloper
Рет қаралды 33 М.
VIP ACCESS
00:47
Natan por Aí
Рет қаралды 28 МЛН