Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Breaking Down the OAuth Flow

Breaking Down the OAuth Flow

Are you lost when reading about OAuth implicit grants vs code grants? Are you always struggling to understand the difference between Amazon Cognito User Pools and Amazon Cognito Federated Identities ? And how your corporate Active Directory fits into that picture ? During this chalk talk, I will demystify Identity federation and whiteboard the main flows allowing you to understand how to leverage these services to bring identity federation to your web or mobile applications.

More Decks by Sébastien Stormacq - AWS Developer Advocate

Other Decks in Technology

Transcript

  1. © 2019, Amazon Web Services, Inc. or its affiliates. All

    rights reserved. Breaking down the OAuth flow Sébastien Stormacq M O B 3 1 5 - R Developer Advocate Amazon Web Services, EMEA
  2. Resource Owner Resource Owner Client (browser, mobile app, app server)

    Application Server Authorization & Identity Server Resource Server (API) Client (browser, mobile app, app server) Application Server Authorization & Identity Server Resource Server (API)
  3. Resource Owner Resource Owner Client (browser, mobile app, app server)

    Authorization & Identity Server Resource Server (API) Client (browser, mobile app, app server) Authorization & Identity Server Resource Server (API) Application Server Application Server
  4. Thank you! © 2019, Amazon Web Services, Inc. or its

    affiliates. All rights reserved. Sébastien Stormacq @sebsto