Главная
Study mode:
on
1
Introduction
2
Agenda
3
What is API
4
Authorization
5
Happy
6
Happy Overview
7
API Requirements
8
API Security
9
Security Enhancement
10
Access Token
11
Conformance Test
12
API Security Profile
13
Summary
14
Introduction of Client Policies
15
Security Profiles
16
Conformance Tests
17
Community
Description:
Explore high-level API security using Keycloak in this sponsored session presented by Yuichi Nakamura from Hitachi, Ltd. Delve into the world of OAuth 2.0, the de-facto standard for securing APIs, and learn about its potential vulnerabilities when implemented incorrectly. Discover Financial Grade-API (FAPI), a robust security profile of OAuth 2.0 designed for APIs requiring enhanced protection, and its widespread adoption by banks globally. Gain insights into Keycloak, an open-source Identity and Access Management (IAM) server, and its implementation of high-level security features to meet FAPI requirements. Examine the ongoing efforts to maintain conformance with FAPI specifications and understand the importance of client policies, security profiles, and conformance tests in ensuring API security. This comprehensive presentation covers key topics such as API authorization, security enhancements, access tokens, and the role of the community in maintaining robust API security standards.

High-Level API Security with Keycloak - FAPI Implementation and Conformance

Linux Foundation
Add to list
00:00
-02:04