Главная
Study mode:
on
1
Intro
2
Authentication and Authorization
3
OAuth and OpenId Connect
4
Terminology
5
Client Type
6
Public Client
7
Scopes
8
Access Tokens
9
JSON Web Token
10
OAuth endpoints
11
OAuth grant types
12
OAuth grant best practices
13
Authorization code injection
14
Pixi
15
URI
16
HTTP Header
17
Reference Token
18
Refresh Token
19
OpenId Connect
20
OAuth Scopes
21
OAuth Connect Endpoints
22
OAuth Connect Hybrid
23
Use Cases
Description:
Explore common mistakes and misconceptions in web application security using OAuth 2.0 and OpenID Connect in this comprehensive conference talk. Delve into the intricacies of authorization and authentication, examining how OAuth 2.0 and OpenID Connect (OIDC) address these challenges. Gain insights into potential pitfalls and misconceptions that developers may encounter when implementing these standards. Learn about client types, scopes, access tokens, JSON Web Tokens, OAuth endpoints, and grant types. Discover best practices for OAuth grants and understand concepts such as authorization code injection, PixiURI, HTTP headers, reference tokens, and refresh tokens. Explore OpenID Connect scopes, endpoints, and the hybrid flow. Benefit from practical demonstrations using IdentityServer4, a popular open-source framework for OpenID Connect and OAuth 2.0 on ASP.NET Core.

Common Mistakes and Misconceptions in Web App Security Using OAuth 2.0 and OpenID Connect

NDC Conferences
Add to list