filmov
tv
How Authentication and Authorization Work for SPAs

Показать описание
Authentication and authorization in public clients like single-page applications can be complicated! We'll walk through the Authorization Code flow with Proof Key for Code Exchange (PKCE) extension to better understand how it works and inspect the auth tokens you get back from the process by spinning up a sample app using Okta.
Table of Contents
00:00 Welcome! Let's dive in!
00:16 Avoiding authentication-related attacks
01:27 Understanding Authorization Code flow with Proof Key for Code Exchange
03:40 Spin up an example application in React
04:38 Peek at the application code
05:51 Run the example application and sign in
06:54 Inspect the network calls from the Authorization Code flow
07:22 Finding the token storage location and look at the access and ID tokens
07:56 See the ID token in action within the application
08:30 See the access token in action within the application
08:59 Thanks for watching! Where to go from here
#authentication #authorization #oauth #oauth2 #spa
___________________________________________
Okta is a developer API service that stores user accounts for your web apps, mobile apps, and APIs.
Table of Contents
00:00 Welcome! Let's dive in!
00:16 Avoiding authentication-related attacks
01:27 Understanding Authorization Code flow with Proof Key for Code Exchange
03:40 Spin up an example application in React
04:38 Peek at the application code
05:51 Run the example application and sign in
06:54 Inspect the network calls from the Authorization Code flow
07:22 Finding the token storage location and look at the access and ID tokens
07:56 See the ID token in action within the application
08:30 See the access token in action within the application
08:59 Thanks for watching! Where to go from here
#authentication #authorization #oauth #oauth2 #spa
___________________________________________
Okta is a developer API service that stores user accounts for your web apps, mobile apps, and APIs.
Authentication vs Authorization Explained
Web Authentication Methods Explained
Session vs Token Authentication in 100 Seconds
oAuth for Beginners - How oauth authentication🔒 works ?
OAuth 2 Explained In Simple Terms
'Basic Authentication' in Five Minutes
How Authentication and Authorization Work for SPAs
Authentication, Authorization, and Accounting - CompTIA Security+ SY0-701 - 1.2
ELI10: Authorization, ReBAC, Google Zanzibar, & SpiceDB Explained with Sesame Street Characters
Web API Security | Basic Auth, OAuth, OpenID Connect, Scopes & Refresh Tokens
Session Vs JWT: The Differences You May Not Know!
Five Spring Security Concepts - Authentication vs authorization - Java Brains Brain Bytes
Microservices Authentication/Authorization architectural pattern
OAuth 2.0 explained with examples
Why do we have Authorization and NOT Authentication in API Requests
Auth0 in 100 Seconds // And beyond with a Next.js Authentication Tutorial
Day 22/40 - Kubernetes Authentication and Authorization Simply Explained
#156 How Authentication Works | Angular Authentication & Authorization | A Complete Angular Cour...
Authentication Vs Authorization in plain English - Security - Session 1
AZ-900 Episode 25 | Azure Identity Services | Authentication, Authorization & Active Directory (...
ASP.NET Authentication using Identity in 10 Minutes - Authentication and Authorization in .NET8
JWT Authentication Explained
Part 14: Authorization and Authentication in APIs | Postman Authorization and Authentication
Microsoft Identity, Authentication & Authorisation Made Easy!
Комментарии