From the course: Web Security: OAuth and OpenID Connect (2019)

Using OAuth 2.0 and OpenID Connect

From the course: Web Security: OAuth and OpenID Connect (2019)

Start my 1-month free trial

Using OAuth 2.0 and OpenID Connect

- More and more, APIs are the foundation of our experience. Whether we're building customer-facing mobile apps, updating existing web apps, integrating with that cool, new device, or thinking about microservices, we can't do that without APIs. Unfortunately, we rarely think about security and how we grant and revoke access. The consequences have already cost airlines, dating websites, and even governments hundreds of millions of dollars. You don't want to be next. Hi, I'm Keith Casey, and I've lived and breathed APIs and API security for over 15 years. In this course, we'll talk about the most common and useful approach to securing access to our APIs, and that's OAuth 2.0. At first glance, OAuth seems hard, and it is, but we'll break it down into core concepts and how and where to apply it. Of course, there's no one-size-fits-all solution so we'll cover the different flavors and extensions to OAuth that help it address things that you probably haven't even considered. So, stick around and find out what you know, and don't know, about Oauth. It's going to be a lot of fun.

Contents