Тёмный

Explain it to Me Like I’m 5: Oauth2 and OpenID 

SpringDeveloper
Подписаться 200 тыс.
Просмотров 70 тыс.
50% 1

OAuth2 and OpenID Connect are quickly becoming mainstays for application developers. Companies want integrated authentication to reduce security footprints and users expect the convenience of single sign-on. As an application developer, it’s up to you to facilitate this in your applications.
In this talk, you’ll learn about OAuth2 and OpenID Connect. The focus will be on concepts and terminology, which is standard across OAuth2 providers and implementations, with the specific goal of presenting them in the simplest way possible. The session will also demonstrate how the concepts covered are used as you interact with OAuth2 providers and develop your Spring Boot and Spring Security applications.
The goal of this session is that you walk out with practical knowledge about OAuth2 and OpenID connect and the confidence to implement these technologies in applications you develop at your company.
Daniel Mikusa: Senior Staff Technical Support Engineer at VMware
Slides: www.slideshare.net/Pivotal/ex...

Наука

Опубликовано:

 

4 июл 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 32   
@igorilievski6634
@igorilievski6634 2 года назад
Insanely good. I was already familiar with this concepts, but now I actually can communicate them to nontechnical personal. Great presentation!
@sara-subramanian
@sara-subramanian 2 года назад
Succinct and yet so illustrative! Learnt a thing or two about technical presentations too! Great presentation and presenter!
@KeyserTheRedBeard
@KeyserTheRedBeard 3 года назад
neat upload SpringDeveloper. I crushed that thumbs up on your video. Keep on up the really good work.
@MrMeMyselfMe
@MrMeMyselfMe 3 года назад
Awesome presentation!
@janigerud
@janigerud 2 года назад
Really great explanation!!! Big thanks for making it
@abayansal
@abayansal Год назад
fantastic explanation of oauth and openid!!!
@richardlanglois5183
@richardlanglois5183 3 года назад
Great presentation!
@zoladkow
@zoladkow 3 года назад
@33:20 i'd say that a wrist band is the analog of an access token (you can go out and back in to the party) while for an id token that would be a badge (name & photo, etc)... 🙃
@sergiogomez189
@sergiogomez189 2 года назад
do you have any example using : (Client Initiated Backchannel Authentication, keycloak and spring boot) please
@RaviYasas
@RaviYasas 3 года назад
Nice explanation !!!
@alexauto4578
@alexauto4578 2 года назад
This is very useful even if I am a little bit above 5 :)
2 года назад
Great talk!
@idealdev7945
@idealdev7945 3 года назад
Awesome!
@ec9386
@ec9386 Год назад
33:15 Why is the ticket booth is called authorization server? It checks your identity, so it should be authentication, right? Please correct me if my understanding is wrong, thanks!
@numankaraaslan
@numankaraaslan 3 года назад
Yep, i am a 5 year old because this worked for me :) Thanks.
@alive-awake
@alive-awake Год назад
Why is AOL making me agree to these terms for my e-mail account?
@TimBee100
@TimBee100 3 года назад
Can't the bearer token be of JWT format?
@IvanRandomDude
@IvanRandomDude 3 года назад
It can be of any format. OAuth specification doesn't define format of the tokens. You can generate your own tokens if you want.
@peternagy3654
@peternagy3654 4 месяца назад
The speaker explains: OAuth2 focusing on what a person can do, not who that person is. Later he tells, OIDC is extension of OAuth2 which implements the authentication, or identity. OIDC focus is to prove who someone, not what they can do. Am I the only one feel confused? Please correct me if I'm wrong, but in the original OAuth2 (without the OIDC extension) authenticating the user was the authorization-server responsibility. Based on the successful authentication, it could determine the authorities of the user. These authorities (stored in the issued token) provided information to the underlying services to make authorization related decisions. So what the OIDC add to this flow? What is the purpose of the separated access and id token. What problem this separation solves? What should we store on each and when should we use them? Can you please explain that like I'm 40+ year old, no need to lower down that much.
@evgeniyrymko8520
@evgeniyrymko8520 11 месяцев назад
It's top!👍
@AjayKumar-fd9mv
@AjayKumar-fd9mv Год назад
Thanks
@veroniquenollet7718
@veroniquenollet7718 3 года назад
Where can I get the presentation so I can click the links? thanks!
@veroniquenollet7718
@veroniquenollet7718 3 года назад
I found it. SOLVED!
@tuacademiadeinformatica2542
@tuacademiadeinformatica2542 2 года назад
@@veroniquenollet7718 ¿where is it??
@alive-awake
@alive-awake Год назад
I guess i need it explained to me as if I was a 2 yr old.
@ykli1399
@ykli1399 2 года назад
is slideshare broken? i can't open the slides :(
@poloolo69
@poloolo69 Месяц назад
goat
@dongshengzhang4105
@dongshengzhang4105 Год назад
Which 5-year-old kid can stand for almost 50 minutes of lecture???
@randomlyswatching9481
@randomlyswatching9481 Год назад
😂
@coolkoala282
@coolkoala282 Год назад
🤣
@vidsjust8349
@vidsjust8349 Год назад
boaring
Далее
Spring Security Patterns
54:26
Просмотров 28 тыс.
Getting Started with Spring Authorization Server
54:21
Кто Первый Получит Миллион ?
27:44
HOW DID SHE WIN??
00:49
Просмотров 14 млн
🤘РОК или ПОП?💖
3:20:26
Просмотров 1,7 млн
Securing Microservices with Spring Cloud Security
1:29:52
Configuring and Extending Spring Authorization Server
38:40
Multi-tenancy OAuth with Spring Security 5.2
1:11:23
Просмотров 30 тыс.
Spring Tips: The Spring Authorization Server
22:21
Просмотров 15 тыс.
Security Patterns for Microservice Architectures
40:30
Spring for Architects
59:46
Просмотров 27 тыс.
Spring Tips: Spring Modulith
37:39
Просмотров 15 тыс.
Mastering Spring Boot's Actuator
1:05:48
Просмотров 36 тыс.