Overview
Explore identity management protocols and their implementation challenges in this 47-minute conference talk. Delve into the complexities of single sign-on across multiple domains and alternatives to traditional password management. Examine SAML, OAuth, and OpenID Connect, understanding their problem-solving capabilities and potential drawbacks. Learn about delegation of identity management responsibilities, authentication processes, and the intricacies of authorization code flow. Discuss important considerations such as trustworthy assertions and common assumptions in identity management. Gain insights into single sign-on implementation and access resources for further reading on this critical aspect of web application security.
Syllabus
Introduction
Authentication
SAML
Library Example
Trustworthy Assertions
OpenID Connect
Authorization Code Flow
Authentication Issues
Assumptions
Conclusion
Single SignOn
Further Reading
Taught by
Ruby Central