What is OAuth2? How does OAuth2 work? | Tech Primers

Поделиться
HTML-код
  • Опубликовано: 19 ноя 2024

Комментарии • 123

  • @tharageshanbu5170
    @tharageshanbu5170 7 лет назад +5

    seriously the best ever intro for oauth . Kindly provide a video in how oauth delegates authentication to AD/LDAP. Will be so helpful

  • @ultralooter
    @ultralooter 3 года назад

    Thank you for the short explanation.
    Greetings from Europe!

  • @ScottAdamson-no5uk
    @ScottAdamson-no5uk Год назад

    Thanks for that, nice simple way to explain with a great example of the process

  • @pavel_espinal
    @pavel_espinal 6 лет назад +4

    Thanks for this clear and concise explanation. You mentioned details and reasons that were omitted by other who tried to explain this in a simple way but failed.
    Keep up the good work.

  • @jasper5016
    @jasper5016 5 лет назад +4

    You could have taken a better example. Banks don't allow social media access. Also when giving a diagram, you could have mentioned User, Bank and Facebook instead of Oauth client and server.

  • @pp-studio
    @pp-studio 3 года назад +2

    Thank you. for your explained this content. after i watched. i can conclusion it's defined protocol and it's not framework.

  • @MrUmang40
    @MrUmang40 5 лет назад

    You answered all my questions ......all my queries were addressed back to back as I kept rolling the footage......thanks

  • @sat08527
    @sat08527 3 года назад +1

    Very well explained and to the point. Thanks

  • @priyankagupta1325
    @priyankagupta1325 2 года назад

    Super awesome explained...

  • @nandyalasurparaju5324
    @nandyalasurparaju5324 5 лет назад +5

    The lecture helps me the understanding Oauth Server.

  • @MrSaiAarya
    @MrSaiAarya 5 лет назад +1

    You did a good job explaining at a high level, but not sure if you have covered more details in any other view where you talked about Refresh tokens and details like does the client application stores the initial access token(2nd step in the flow) it got after authentication token till user credentials did not change.

  • @sreejithsreekumar6765
    @sreejithsreekumar6765 4 года назад +1

    Well explained. Thank you very much

  • @good_life_videos
    @good_life_videos 6 лет назад +5

    I liked the way you specify every single terminology very clearly (Y)

  • @rvenkataramana9
    @rvenkataramana9 5 лет назад +3

    Simple and easy. Loved it. I felt at the end you should have taken little more time explaining the inside Org example which you were quoting. Rest all is just superb.

    • @TechPrimers
      @TechPrimers  5 лет назад

      Thank you for the feedback Venkata. Glad that was useful!

  • @alakanandarath683
    @alakanandarath683 4 года назад

    So here the resource server is also Facebook and resource means the user information?

  • @shrikeshk9
    @shrikeshk9 5 лет назад

    I implemented login with username and passwors using sprint security. But that does not use access and refresh token. Please let me know how can I use Oauth 2 for such application?

  • @srajesh24
    @srajesh24 5 лет назад

    Is there a way to implement oAuth2.0 only for a specific resource(module) of my web application ?

  • @anshikachoubey89
    @anshikachoubey89 6 лет назад +2

    Thanks for the explaination.. so outh2 is only for cloud applications? Correct

  • @mohammedrafeeq4902
    @mohammedrafeeq4902 4 года назад

    why cant the client id and secret be included in the first request made and get an access token? isn't this an overhead where first get an authorization code and then get an access token in the second step

  • @harshalmorepatil7297
    @harshalmorepatil7297 4 года назад

    Superb Explain sir...Sir can U give Some Documentation For OAuth From Your side...it could be beneficial for us

  • @akki0gr8
    @akki0gr8 3 года назад +1

    Nice tutorial, but could have given some better example using google -> zoom or google -> uber something like that also please provide detailed logic how the token is verified in the server side.

  • @321zipzapzoom
    @321zipzapzoom 5 лет назад +1

    Thanks For this Clear and Concise Explanation..You rock

  • @chenyangwang7232
    @chenyangwang7232 5 лет назад

    Confusing, why client gets access token in both step 2 & 4? What is the difference between code=token and access_Token=someToken?

  • @samakranthi
    @samakranthi 5 лет назад

    can you also tell us the difference between the two tokens.. Initial token and also access token

  • @ekanshaggarwal5039
    @ekanshaggarwal5039 5 лет назад

    Best Video so far, very well explained the concept step by step ....amazing dude.

  • @JasminderPalSingh
    @JasminderPalSingh 4 года назад +1

    Very good explanation :)

  • @JohnReynoldsYeah
    @JohnReynoldsYeah 4 года назад +1

    Nice job, thanks

  • @reachkrishnaraj
    @reachkrishnaraj 6 лет назад +1

    It would nice to know the instructor identity for credits! Tech primers is good stuff, Thanks Much!

    • @TechPrimers
      @TechPrimers  6 лет назад +2

      Hi Krishna
      I'm Ajay. I'm the only person behind TechPrimers.

    • @reachkrishnaraj
      @reachkrishnaraj 6 лет назад

      Good to know you, Ajay!

  • @MsCrusifix
    @MsCrusifix 5 лет назад +2

    fantastic work.. nicely explained. can you do an explaination on refresh token and extending time on access token

  • @renuvajjarapu8142
    @renuvajjarapu8142 5 лет назад

    Hi, i want to use this autho to link my portal to alexa..please help me with this

  • @ra5hm1n
    @ra5hm1n 6 лет назад

    Man Your Content is Nice ! Keep it up ! Subscribed :)

  • @shyamp5822
    @shyamp5822 5 лет назад +5

    Bro Oauth is used only for web app or mobile app, not for bank account details
    Need to change the example

  • @faizy16
    @faizy16 6 лет назад

    Excellent and precise explanation .. really helpful to understand the concept... Can you please tell me is the authorization server also the same as consent management if not how different is it or do you have a video explaining consent management as well.. really appreciate your work and explanation...thanms

  • @shubhamchandra9258
    @shubhamchandra9258 6 лет назад

    Unchecked runtime.lastError while running identity.getAuthToken: OAuth2 request failed: Service responded with error: 'bad request'
    at HTMLButtonElement. Can you plz help me with this

  • @roshansebastian1862
    @roshansebastian1862 4 года назад +1

    Thank you. Really helpfull.

  • @AbhishekNigam
    @AbhishekNigam 6 лет назад +2

    Excellent explanation! Thank you 😀

  • @anjusingh8810
    @anjusingh8810 6 лет назад +5

    Really Nice Video for Understand working structure of Oauth authourization Server

  • @budsyremo
    @budsyremo 6 лет назад +1

    But a question , at the 5th stage let's say that some other guy gets the token , access token , so won't he be able to get all the data ?

    • @MinhThu-nj7zi
      @MinhThu-nj7zi 6 лет назад

      To answer your question, it's explained in detail here: ruclips.net/video/996OiexHze0/видео.html

  • @coffeewithjava5625
    @coffeewithjava5625 2 года назад +1

    Awesome . God Bless :)

  • @xGDGulp
    @xGDGulp 7 лет назад +1

    Can i create authorization server and resource server and client application in different application using oauth2

    • @TechPrimers
      @TechPrimers  7 лет назад

      +Girish Dubey yes. You can

    • @xGDGulp
      @xGDGulp 7 лет назад

      I'm struggling to figure out how this is actually implemented in practice.
      As an example, suppose the following apps exist:
      authorization server
      resource server - (WFC/Web Api)
      Client: web frontend MVC - abcapp
      web frontend MVC - xyzapp
      third-party client app
      can you suggest me how?

  • @apiautomationtester2567
    @apiautomationtester2567 7 лет назад +2

    Nice video, but put in description like who is the targeted audience and how it helps for a developer or tester ..etc thank you for sharing the video

    • @TechPrimers
      @TechPrimers  7 лет назад

      +api testing sure. Thanks for the suggestion.

  • @ravi-thestar8501
    @ravi-thestar8501 5 лет назад +1

    Good work ajay

  • @kassandrarodriguez8057
    @kassandrarodriguez8057 4 года назад +1

    This is great

  • @vigisbigtm
    @vigisbigtm 4 года назад

    Why would I want to use this? Can you explain?

  • @rockyr7107
    @rockyr7107 6 лет назад +2

    Very well explained. Video on oauth1.0 please.

  • @kevinsantana876
    @kevinsantana876 5 лет назад +2

    Great video, thanks for the explanation :)

  • @tharageshanbu5170
    @tharageshanbu5170 7 лет назад

    why should the client need to access the resource like account,etc available in facebook authentication server ? What is the reason ? Will facebook itself expose endpoints to be accessed by any client ?

  • @195mano
    @195mano 5 лет назад

    kindly do the realtime implementation for accessing social network like FB,linkedIN etc using java.

  • @rxanoop
    @rxanoop 6 лет назад +1

    Good video. Easy to understand

  • @SejpalPavan
    @SejpalPavan 5 лет назад

    how to create redirect_uri please tell

  • @budsyremo
    @budsyremo 6 лет назад +1

    Very good explanation bro , keep up the good work .

  • @muralikrishna5927
    @muralikrishna5927 7 лет назад +4

    Sir your content and explanation is very good but I'am beginner in spring boot so
    please give any nodes or link to learn spring boot

    • @TechPrimers
      @TechPrimers  7 лет назад +3

      Hi Murali, you can start off with my Spring Boot playlist, I have started off from the basic. I believe in hands on to learn technology. You can check all these codes in my github profile as well.

  • @balrajmys
    @balrajmys 7 лет назад

    Good one :) Please provide a demo on oauth implementation would be great :) Thanks :)

  • @bahdanshyshkin7918
    @bahdanshyshkin7918 6 лет назад +1

    Thank u for your videos dude, it really helps

  • @shishirdkm
    @shishirdkm 5 лет назад

    how implement in normal jsp servlet project

  • @hassanmohammed3798
    @hassanmohammed3798 6 лет назад +1

    Simple and clean. Thanks!

  • @SanjeevSingh-mc4hz
    @SanjeevSingh-mc4hz 5 лет назад +1

    Nicely explained. Simple.

  • @rameshkumar171
    @rameshkumar171 7 лет назад

    thanks you..
    can you please provide demo on oauth implementation...

    • @TechPrimers
      @TechPrimers  7 лет назад +1

      check my videos on OAuth implementation using Spring Boot

  • @DeepakPandey-ij3bz
    @DeepakPandey-ij3bz 6 лет назад

    If a Web site shows options to login via Facebook or Gmail account then we are logging in with one of the options still it will be considered as Oauth framework. It's delegating authentication...

  • @tekieshub5917
    @tekieshub5917 5 лет назад +1

    Very well explained, Thank you

  • @amardeepmudgade6918
    @amardeepmudgade6918 6 лет назад +1

    Easy to understand, thank you.

  • @CkpPanda
    @CkpPanda 6 лет назад

    what is openId?

  • @andrzejokon1517
    @andrzejokon1517 6 лет назад +1

    Thanks for tutorial. Good one like always.

  • @TonyCletus
    @TonyCletus 6 лет назад +1

    Nice One ....Well explained

  • @asifkamranmalick5313
    @asifkamranmalick5313 6 лет назад +4

    This was a great video. Easy to understand. Thank you.

    • @TechPrimers
      @TechPrimers  6 лет назад

      thank you asif. Glad that was helpful

  • @prakashkaruppusamy3817
    @prakashkaruppusamy3817 5 лет назад +1

    Perfect explanation,👍

  • @00mukund
    @00mukund 5 лет назад

    Refresh token ?

  • @abhilashkokkonda1713
    @abhilashkokkonda1713 5 лет назад +1

    Good

  • @abhisheksindhi708
    @abhisheksindhi708 6 лет назад

    Are Facebook and City Bank in this example having partnership like we have in afederated environment

  • @B-Billy
    @B-Billy 7 лет назад +1

    Great introduction

  • @premierde
    @premierde 5 лет назад

    I find the that example of Bank will ask google account is wierd. And google will authenticate for what?. Why would a bank application will have this kind of flow.

  • @essentialdang
    @essentialdang 6 лет назад +1

    Great tutorial, thank you!

  • @xiuxueliu9755
    @xiuxueliu9755 6 лет назад

    I can understand the progress , but the detail configration i can not understand

  • @AMANSINGH-kh7ok
    @AMANSINGH-kh7ok 6 лет назад +1

    great example thanks!!

  • @AspirantNoteBooks
    @AspirantNoteBooks 5 лет назад +1

    amazing explainnation thx

  • @prasanthkoppuravuri
    @prasanthkoppuravuri 6 лет назад

    what about my username & password exposed to third party ? he can record right ?

  • @chaudrysuleman4579
    @chaudrysuleman4579 7 лет назад

    plz recommend me some video lectures with code example

    • @TechPrimers
      @TechPrimers  7 лет назад +1

      Hi Chaudry,
      check these videos on hands on with OAuth:
      ruclips.net/video/Dbxzw0cpxBU/видео.html
      ruclips.net/video/dTAgI_UsqMg/видео.html

    • @chaudrysuleman4579
      @chaudrysuleman4579 7 лет назад

      Thaknx

  • @utkarshagrawal6060
    @utkarshagrawal6060 7 лет назад

    I think you are confuse in "What will be the token called". I mean you use "code=token" and in the third step again you said a "new token" which is very confusing, So the code =token is "Authorisation token", and then through that auth token client will ask the "Access token".

    • @anjusingh8810
      @anjusingh8810 6 лет назад +1

      After Authorization Grant the access token is provided and after that it will resend to authorized server for confirmation. i think this information will help you to understand

  • @utubvenkatesh
    @utubvenkatesh 6 лет назад +1

    nice video...

  • @thannasip8001
    @thannasip8001 6 лет назад

    scope parameter missing.

  • @Sarthaknehavikas
    @Sarthaknehavikas 6 лет назад +1

    Thank you, this was good

  • @fahadsulaiman6451
    @fahadsulaiman6451 5 лет назад

    how to identify the user using access token

    • @TechPrimers
      @TechPrimers  5 лет назад

      You have to decrypt the Token

    • @TechPrimers
      @TechPrimers  5 лет назад

      Similar question stackoverflow.com/questions/7290670/decrypt-oauth-2-0-access-token/7330594

  • @semikolon4229
    @semikolon4229 5 лет назад +1

    Thanks.

  • @pradnyas8898
    @pradnyas8898 4 года назад

    may be you need to change the example

  • @kheteshrotangan4888
    @kheteshrotangan4888 6 лет назад +1

    grt video

  • @shibnathroy106
    @shibnathroy106 6 лет назад +1

    Thank You

  • @agraharamvidyasagar3766
    @agraharamvidyasagar3766 6 лет назад +1

    ..Probably you missed important point - the abbreviation - OAuth = OpenAuthorization.

  • @manojvishwakarma662
    @manojvishwakarma662 5 лет назад

    Sir Share the source code how to implement in the project layered Architecture urgents

  • @ricardcantm
    @ricardcantm 4 года назад

    me no entender

  • @danielcairns9390
    @danielcairns9390 6 лет назад +2

    thanks

  • @raven1552
    @raven1552 5 лет назад

    incomprehensible
    english.

  • @TrailTribune
    @TrailTribune 7 лет назад +24

    English please.

    • @youraverageguitarplayer
      @youraverageguitarplayer 7 лет назад +20

      The guy is providing a good explanation about a topic that you were interested, you should like it instead of criticizing.

    • @aditya1010100
      @aditya1010100 7 лет назад +2

      It hardly matters. All we need is knowledge.

    • @fegm22
      @fegm22 7 лет назад +2

      Here is some english.. GYF :D

    • @sureshkumaranbu
      @sureshkumaranbu 7 лет назад +6

      I dont find anything wrong in his english

    • @aliprasla874
      @aliprasla874 7 лет назад +4

      Yeah. This was a pretty racist comment. He provided a very clear explanation.