OAuth is one of the most important but most misunderstood frameworks out there. What you think it is, it probably isn’t. What it actually is, you probably hadn’t considered. Regardless, when you consider the standards, specifications, and common practices interact and fit together, it’s impressive what you can accomplish with minimal effort.

In this session, we’ll explore through the most common RFCs and implementations that are combined to make powerful, robust, and secure solutions that drive modern software development.

Comments

Please login to leave a comment

john barclay at 20:17 on 25 Apr 2024

I went to same talk last year, This year was even better as some new developments were brought in and some additional use case narratives added. Appreciate how well prepared the talk was and the enthusiasm he maintained. Excellent mix of covering the details needed to plan Oauth2 client while looking at bigger architecture picture. Could use a little more "news" on where oauth identity providers are at in terms of adopting various RFCs and standards versions.

Keith Casey (Speaker) at 11:48 on 26 Apr 2024

@john!

I wish you'd said something to me this week. I owe you a beverage!

After your legit criticism last year, I rewrote a portion of my talk to make it better. Yes, seriously: https://joind.in/event/phptek-2023/the-many-layers-of-oauth#comment-6b34cc

Andrew Woods at 14:02 on 26 Apr 2024

The realm of OAuth is out of my wheelhouse. So it was great to hear it presented. Keith did a fantastic job of explaining the complexity of OAuth in simple terms. He helps you focus on most imporrant aspects, by identifying and highlighting them. I'd recommend this talk for anyone that wants to get into OAuth. 10 points to Griffindor for giving out hardware widgets.