What's the difference between Confidential and Public clients? - OAuth in Five Minutes

  Рет қаралды 28,583

OktaDev

OktaDev

Күн бұрын

Пікірлер: 16
@eurostar123
@eurostar123 3 жыл бұрын
I really like this 5 minutes format. I wanted to know the difference between Public and Confidential Access Type and you made it short and concise. This is how it needs to be! No beating around the bush. Short, concise with pleasant background music. thanks for that!
@BrokenSword17
@BrokenSword17 2 жыл бұрын
Thank you SOOOOOO much.... I have worked in IT for years and we need unsung heroes like you. People always use 20-dollar top-shelf words for such simple concepts.
@tstcikhthys
@tstcikhthys 2 жыл бұрын
This guy and his Okta-sponsored OAuth website is a godsend. So informative, yet simple to understand.
@deepsits7995
@deepsits7995 Жыл бұрын
Crisp and to the point information. Thanks for sharing.
@mabonora
@mabonora 3 жыл бұрын
It's hard to find videos so concise and clear like this one. Loved it! It helped me a lot.
@alex_chugaev
@alex_chugaev 3 жыл бұрын
Your videos helped me a lot, thank you, you're the best!
@wfwf7645
@wfwf7645 3 жыл бұрын
Short but extremely clear explanation, thanks!
@torstenlodderstedt5590
@torstenlodderstedt5590 4 жыл бұрын
Hi Aaron, I like your video. One addition: client authentication also increases the level of confidence regarding the client's identity, which also means the AS may give an authenticated client more privileges, e.g. using client credentials.
@nightpool42
@nightpool42 2 жыл бұрын
This is a common misconception. There is no concept of an "identity" for a public client-any attacker can trivially be in full control of the client's code and secrets, and can manipulate it into doing whatever it wants.
@nguyenquan4836
@nguyenquan4836 10 ай бұрын
Thanks very info.
@mamoudoufofana4316
@mamoudoufofana4316 Жыл бұрын
Good job, thank you
@phpdude
@phpdude 4 жыл бұрын
Thank you for this
@jamesallen74
@jamesallen74 4 жыл бұрын
Great video, and yes I did "like" it.
@anatoliistepaniuk8217
@anatoliistepaniuk8217 3 жыл бұрын
Is it recommended to use Confidential client over Public client if there such opportunity? if yes, then why?
@fooked1
@fooked1 4 жыл бұрын
Can you please explain the need for PKCE vs ROPC grant when the client is public but I own both of them? For example, my backend API has an OAuth provider as middleware and my frontend app is a JS SPA. I'm trying to understand how ROPC is different from typical token based authentication/authorization systems that don't use OAuth.
@brucewayne2480
@brucewayne2480 3 жыл бұрын
Lol after reading many articles and seeing this video, I'm still confused between those terms what if my application is a typical web app that has a backend server and a frontend (React app, angular app) , (same for native mobile app) should I use confidential or Public ?
An Illustrated Guide to OAuth and OpenID Connect
16:36
OktaDev
Рет қаралды 586 М.
Everything You Ever Wanted to Know About OAuth and OIDC
33:21
Brawl Stars Edit😈📕
00:15
Kan Andrey
Рет қаралды 11 МЛН
Running With Bigger And Bigger Feastables
00:17
MrBeast
Рет қаралды 211 МЛН
ДОКАЗАЛ ЧТО НЕ КАБЛУК #shorts
00:30
Паша Осадчий
Рет қаралды 1,5 МЛН
Cursor Is Beating VS Code (...by forking it)
18:00
Theo - t3․gg
Рет қаралды 33 М.
How to Hack OAuth
25:10
OktaDev
Рет қаралды 43 М.
OAuth Phishing? - OAuth in Five Minutes
5:02
OktaDev
Рет қаралды 9 М.
OAuth 2.0 and OpenID Connect (in plain English)
1:02:17
OktaDev
Рет қаралды 1,7 МЛН
A Developer's Guide to SAML
27:47
OktaDev
Рет қаралды 181 М.
OAuth: When Things Go Wrong
43:58
OktaDev
Рет қаралды 26 М.
"I Hate Agile!" | Allen Holub On Why He Thinks Agile And Scrum Are Broken
8:33
What is a Protocol? (Deepdive)
18:14
LiveOverflow
Рет қаралды 169 М.
What's going on with the OAuth 2.0 Implicit flow?
17:18
OktaDev
Рет қаралды 83 М.