RFC 9068: A JWT-Based OAuth2 Access Token Format Standard
Tokens / SHYCITYNikon For anyone who has been paying attention, this blog post has been a long-time coming for multiple[…]
Read moreThe Intersection of Identity, Integration, API Management, and Application Security.
Tokens / SHYCITYNikon For anyone who has been paying attention, this blog post has been a long-time coming for multiple[…]
Read morePattern / Vinoth Chandar I recently finished implementing OAuth2 and OIDC support for Azure Active Directory in my OAuth2 + OIDC[…]
Read morePattern / Denis Cappellin This post contains a collection of links to blog posts I’ve written about the use of[…]
Read morePatterns on the wall. / John In this post, we are going to configure Red Hat SSO v7.1 for OpenID Connect[…]
Read more
A while back I needed a summary of which protocols were supported/recommended in different situations by Azure Active Directory while[…]
Read more
This post explores the equivalent JWT use cases corresponding to the five SAML2 use cases that were explored earlier in[…]
Read more
The OpenID Connect (OIDC) family of specs supports logout (from a single application) and global (or single) logout (from all[…]
Read moreExtending OAuth2 and OpenID Connect as the enterprise standard for API security This post was originally published as “An Alternative[…]
Read moreThe following blog posts make up my series on OpenID Connect. This is part of the SAML2 vs JWT series.[…]
Read moreIn part 1 and part 2 of Understanding OpenID Connect, core concepts and the first Authentication Flow (Authorization Code Grant[…]
Read more