Everything You Ever Wanted to Know About OAuth and OIDC

Everything You Ever Wanted to Know About OAuth and OIDC

OktaDev

3 года назад

32,690 Просмотров

Ссылки и html тэги не поддерживаются


Комментарии:

YAPAYZEKA
YAPAYZEKA - 13.08.2023 19:14

I watched a lot of videos about the context and this is the most clear and satifying explanation of them all. thank you very very much.

Ответить
Marco M.
Marco M. - 09.08.2023 13:18

Thanks a lot, Aaron. This is by far the best and comprehensive video I saw about these topics.

Ответить
Debjit Kar
Debjit Kar - 30.11.2022 21:49

Nice 👍 Please post some videos on OIDC Single Sign on.

Ответить
Nestor Guemez
Nestor Guemez - 09.10.2022 06:48

Excellent content!

Ответить
Dung Le
Dung Le - 30.09.2022 13:14

Excellent! Thank you very much!

Ответить
Rodrigo Carreño
Rodrigo Carreño - 24.08.2022 00:03

Thanks Aaron! This is the clearest explanation about oauth that I have seen

Ответить
Gitahi Ng'ang'a
Gitahi Ng'ang'a - 22.08.2022 10:54

Very clear and concise Thanks a bunch!

Ответить
Ulvi Guliyev
Ulvi Guliyev - 11.08.2022 10:46

Fantastic video, thank you. In fact the only explanation of these concepts I could find that made sense.

Ответить
ShaunPX1
ShaunPX1 - 15.03.2022 05:41

Great video, thank you for clearly explaining this topic!!!

Also Where did you get that shirt it is awesome!

Ответить
Chris Legaxy
Chris Legaxy - 05.02.2022 16:06

By far the best explanation! 🙌
Thank you! You rock!

Ответить
Li's Channel
Li's Channel - 20.01.2022 10:42

Fantastic explanation! Thank you!

Ответить
DallasStars
DallasStars - 14.01.2022 14:58

Great explanation! Thanks

Ответить
Can Lin
Can Lin - 04.10.2021 16:07

Excellently explained! Thanks!

Ответить
Jagan
Jagan - 01.09.2021 17:04

Wow!!! This is SPOT ON. Thanks for the excellent presentation Aaron.

Ответить
Chandra Lingam
Chandra Lingam - 31.07.2021 14:57

It was nicely done, Aaron! Excellent presentation and effortless communication!

Ответить
ft light
ft light - 20.05.2021 00:00

that is soooo useful! )
great explanation, thanks!

Ответить
Kevin Cornally
Kevin Cornally - 19.05.2021 00:26

Such a great presentation !!!!

Ответить
Collected Reader
Collected Reader - 01.05.2021 00:30

Amazing explanation.

Ответить
Gobind Rawat
Gobind Rawat - 13.04.2021 01:39

One more question : As mentioned in the use case , if the Access Token has 8 hours validity and during the registration/login , user gave consent for some explicit scopes ( example vehicle data) , the access token has the claims information and if clients are checking the claims information and validity against IDP token introspection endpoint and based on the response are letting the user uses their api. What if in the meantime , user revoke some of the consent ? Access Token will still consist the previously given consent information and if the client is based on IDP token introspection response then critical service access will become accessible. Revoking the token and asking the user to log in again so correct consent based token can be generated can lead to very bad user experience if IDP has global logout & SSO . Any best practices here ? Please share some . Thanx

Ответить
Gobind Rawat
Gobind Rawat - 13.04.2021 01:13

Hi , I have a question regarding Refresh Token Use case especially when we have a unreliable clients ( Native Apps) . The new best practice about Refresh Token mentions that it should be replaced with each new token exchange request . So basically with new token exchange request , client receives a new refresh Token along with Access & ID Token . How should we tackle a Logout scenario if client is mobile app . Mobile App can have very unreliable network and due to this User can be logout due to expired Token . Is there any best practices regarding this use case ? Thanks I’m advance . Ok

Ответить
James Allen
James Allen - 11.04.2021 05:36

Fantastic video!

Ответить