• Complain

Martin Spasovski - OAuth 2.0 Identity and Access Management Patterns

Here you can read online Martin Spasovski - OAuth 2.0 Identity and Access Management Patterns full text of the book (entire story) in english for free. Download pdf and epub, get meaning, cover and reviews about this ebook. year: 2013, publisher: Packt Publishing, genre: Computer. Description of the work, (preface) as well as reviews are available. Best literature library LitArk.com created for fans of good reading and offers a wide selection of genres:

Romance novel Science fiction Adventure Detective Science History Home and family Prose Art Politics Computer Non-fiction Religion Business Children Humor

Choose a favorite category and find really read worthwhile books. Enjoy immersion in the world of imagination, feel the emotions of the characters or learn something new for yourself, make an fascinating discovery.

Martin Spasovski OAuth 2.0 Identity and Access Management Patterns
  • Book:
    OAuth 2.0 Identity and Access Management Patterns
  • Author:
  • Publisher:
    Packt Publishing
  • Genre:
  • Year:
    2013
  • Rating:
    4 / 5
  • Favourites:
    Add to favourites
  • Your mark:
    • 80
    • 1
    • 2
    • 3
    • 4
    • 5

OAuth 2.0 Identity and Access Management Patterns: summary, description and annotation

We offer to read an annotation, description, summary or preface (depends on what the author of the book "OAuth 2.0 Identity and Access Management Patterns" wrote himself). If you haven't found the necessary information about the book — write in the comments, we will try to find it.

A practical hands-on guide to implementing secure API authorization flow scenarios with OAuth 2.0

Overview

  • Build web, client-side, desktop, and server-side secure OAuth 2.0 client applications by utilizing the appropriate grant flow for the given scenario
  • Get to know the inner workings of OAuth 2.0 and learn how to handle and implement various authorization flows
  • Explore practical code examples that are executable as standalone applications running on top of Spring MVC

In Detail

OAuth 2.0 has become the most widely used authorization framework. It provides an easy-to-use sign-in mechanism and allows users to quickly and efficiently secure service APIs. It also provides a protection layer for assets so that various third-party applications cannot have direct access to them. From service providers like Amazon and social media platforms like Facebook and Twitter to various internal enterprise solutions, OAuth 2.0 is the preferred standard for authorization.

OAuth 2.0 Identity and Access Management Patterns is a step-by-step guide to build web, client-side, desktop, and server-side secure OAuth 2.0 client applications by utilizing the appropriate authorization techniques.. This book will help you handle and implement various authorization flows for your chosen type of application. Furthermore, you will understand when and how OAuth 2.0 is used in enterprises for trusted and first-party applications. You will gain knowledge about the Resource Owner Password Credentials grant and the Client Credentials grant, and more importantly, you will understand how to implement them yourself with the help of practical code examples.

You will start by making various client applications step-by-step before moving on to client registration and implementing various OAuth 2.0 authorization flows. Furthermore, you will also be handling server responses with access tokens and errors. By the end of this book, you should understand precisely what it takes for these client applications to be secured.

This book helps you cover each type of application: web, client-side, desktop, and trusted applications. In addition, you are also shown how to implement various authorization grant flows for each of these applications. You will uncover the security features that are a part of OAuth 2.0. More importantly, the book demonstrates what information is transmitted during the execution of a flow, and which precautions can be made. With OAuth 2.0 Identity and Access Management Patterns, you will be able to build a secure OAuth 2.0 client application with full confidence and will completely understand what data is exchanged when performing an authorization grant flow.

What you will learn from this book

  • Master the meaning of key terms used and defined in the OAuth 2.0 specification
  • Create OAuth 2.0 web applications and learn the Authorization Code grant
  • Generate client-side OAuth 2.0 applications and learn the Implicit grant
  • Design OAuth 2.0 mobile applications with the Implicit and Authorization Code grants
  • Develop trusted OAuth 2.0 applications and learn the Resource Owner Password Credentials grant and the Client Credentials grant
  • Understand which security features OAuth 2.0 contains, what information is to be protected, and what precautions should be put in place
  • Explore the basics of SAML 2.0 Assertions and how to use them as a means of additional security
  • Know which tools and libraries are available for faster development

Martin Spasovski: author's other books


Who wrote OAuth 2.0 Identity and Access Management Patterns? Find out the surname, the name of the author of the book and a list of all author's works by series.

OAuth 2.0 Identity and Access Management Patterns — read online for free the complete book (whole text) full work

Below is the text of the book, divided by pages. System saving the place of the last page read, allows you to conveniently read the book "OAuth 2.0 Identity and Access Management Patterns" online for free, without having to search again every time where you left off. Put a bookmark, and you can go to the page where you finished reading at any time.

Light

Font size:

Reset

Interval:

Bookmark:

Make
OAuth 2.0 Identity and Access Management Patterns

OAuth 2.0 Identity and Access Management Patterns

Copyright 2013 Packt Publishing

All rights reserved. No part of this book may be reproduced, stored in a retrieval system, or transmitted in any form or by any means, without the prior written permission of the publisher, except in the case of brief quotations embedded in critical articles or reviews.

Every effort has been made in the preparation of this book to ensure the accuracy of the information presented. However, the information contained in this book is sold without warranty, either express or implied. Neither the authors, nor Packt Publishing, and its dealers and distributors will be held liable for any damages caused or alleged to be caused directly or indirectly by this book.

Packt Publishing has endeavored to provide trademark information about all of the companies and products mentioned in this book by the appropriate use of capitals. However, Packt Publishing cannot guarantee the accuracy of this information.

First published: November 2013

Production Reference: 1181113

Published by Packt Publishing Ltd.

Livery Place

35 Livery Street

Birmingham B3 2PB, UK..

ISBN 978-1-78328-559-4

www.packtpub.com

Cover Image by Abhishek Pandey (<>)

Credits

Author

Martin Spasovski

Reviewers

Charles Bihis

Max Countryman

Acquisition Editor

Vinay Argekar

Commissioning Editor

Mohammed Fahad

Technical Editors

Rosmy George

Arwa Manasawala

Project Coordinator

Amigya Khurana

Akash Poojary

Proofreader

Lawrence A. Herman

Indexer

Mehreen Deshmukh

Graphics

Yuvraj Mannari

Abhinash Sahu

Production Coordinator

Melwyn D'sa

Cover Work

Melwyn D'sa

About the Author

Martin Spasovski is a software development professional involved in developing JVM-based enterprise solutions. He has been working with various back-end technologies and architectures, and with various front-end technologies (from RCP to modern JavaScript web applications), and knows how to integrate both sides well. He mostly likes to work in the domain of data processing, software optimization, and providing custom solutions.

He is a vocal open source and open standards supporter, and a member of the local Java User Group named JUGMK, and likes to research on emerging technologies and give internal presentations at Seavus, the company that he works for.

He can be found at http://thisismartin.com, where his blog, contact info, and links to public project repositories can be found.

I'd like to thank the team at Packt Publishing for giving me the opportunity to write this book and for their guidance. I'd also like to thank my close ones (Biljana, Stefan, and my parents) for the support given and enthusiasm shared.

About the Reviewers

Charles Bihis is a technologist and entrepreneur. He earned his degree in computer science from The University of British Columbia, where he specialized in software engineering. He is known for his open source contributions as well as his work in the identity space. His areas of interest include algorithms and data structures, graph theory, and distributed systems. He is currently working as a Computer Scientist at Adobe Systems where he focuses on solving the latest problems in the identity and security space. You can reach him through his website at www.whoischarles.com.

Max Countryman is a polyglot, full-stack programmer with extensive experience in building highly-available web server applications. He is an active member of the Python and Clojure communities and spends his free time working on open source projects.

www.PacktPub.com
Support files, eBooks, discount offers and more

You might want to visit www.PacktPub.com for support files and downloads related to your book.

Did you know that Packt offers eBook versions of every book published, with PDF and ePub files available? You can upgrade to the eBook version at > for more details.

At www.PacktPub.com, you can also read a collection of free technical articles, sign up for a range of free newsletters and receive exclusive discounts and offers on Packt books and eBooks.

httpPacktLibPacktPubcom Do you need instant solutions to your IT - photo 1

http://PacktLib.PacktPub.com

Do you need instant solutions to your IT questions? PacktLib is Packt's online digital book library. Here, you can access, read and search across Packt's entire library of books.

Why Subscribe?
  • Fully searchable across every book published by Packt
  • Copy and paste, print and bookmark content
  • On demand and accessible via web browser
Free Access for Packt account holders

If you have an account with Packt at www.PacktPub.com, you can use this to access PacktLib today and view nine entirely free books. Simply use your login credentials for immediate access.

Preface

OAuth 2.0 has become the most widely used authorization framework. From securing service APIs to providing an easy to use sign-in mechanism, it provides a protection layer for the assets of the users so that various third party applications cannot have direct access to them. From service providers such as Amazon and social media platforms such as Facebook and Twitter to various internal enterprise solutions, OAuth 2.0 is often the authorization standard of choice.

OAuth 2.0 Identity and Access Management Patterns is a practical and informative book that will help you learn what OAuth 2.0 is, how to handle and implement various authorization flows for the chosen type of application, which security precautions to take into consideration, and so on.

You will explore each type of application such as web, client side, desktop, and so called trusted applications, and will see how to implement various authorization grant flows for each type of application. You will explore practical code examples that are executable as standalone applications running on top of Spring MVC. You will learn about the security features that are part of OAuth 2.0, what information that is transmitted during the execution of a flow is to be protected, and which precautions can be made. You will also learn how to use SAML 2.0 assertions in order to provide additional security. In the end, you will also learn which tools and libraries are there for the popular programming languages that provide support for integration with OAuth 2.0.

What this book covers

, Need for OAuth 2.0 , introduces OAuth 2.0, what purpose it has, why was it created, and what the benefits of its use are.

, Terms You Need to Know , explains key terminology used and defined in the OAuth 2.0 specification.

, First Step for Your Application , covers client registration, a mandatory step that has to be done when developing an OAuth client application.

, OAuth for Web Server Applications , explains what web server applications are and how OAuth 2.0 is used in them by applying the authorization code grant. The grant is covered in detail and a practical code example of a client application is made.

Next page
Light

Font size:

Reset

Interval:

Bookmark:

Make

Similar books «OAuth 2.0 Identity and Access Management Patterns»

Look at similar books to OAuth 2.0 Identity and Access Management Patterns. We have selected literature similar in name and meaning in the hope of providing readers with more options to find new, interesting, not yet read works.


Reviews about «OAuth 2.0 Identity and Access Management Patterns»

Discussion, reviews of the book OAuth 2.0 Identity and Access Management Patterns and just readers' own opinions. Leave your comments, write what you think about the work, its meaning or the main characters. Specify what exactly you liked and what you didn't like, and why you think so.