Advanced OAuth Security
Learn the high-security OAuth extensions described in FAPI: PAR, JAR, JARM, DPoP, Mutual TLS, and HTTP Signatures
Created by Aaron Parecki | 1.5 hours on-demand video course
Certain applications need a higher level of security compared to what is part of the core OAuth 2.0 specifications. This course will guide you through the details of FAPI, a set of extensions of OAuth 2.0 that provide additional layers of security throughout the OAuth flows. This Advanced OAuth Security course covers the extensions of OAuth developed by the OAuth Working Group at the IETF as well as the OpenID Foundation.
What you’ll learn
- How to leverage the advanced OAuth specifications for high-security applications
- Learn the details of the FAPI specifications, including the FAPI Security Profile and FAPI Message Signing
- Learn the purpose of JAR, JARM, MTLS, DPoP, HTTP Signatures, and Non-Repudiation
- How to apply HTTP Message Signing and JWTs to achieve non-repudiation for every role in an OAuth exchange
Recommended Course
Advanced OpenID Connect with Keycloak and Spring Security
OpenAPI Specification & Swagger Tools – Zero To Master Best seller
[NEW] Spring Security 6 Zero to Master along with JWT,OAUTH2 Best seller
Enterprise OAuth 2.0 and OpenID Connect
Who this course is for:
- Software architects, application developers, or technical decision makers
- API developers who want to better secure their APIs
- Developers and software architects working in high-security fields working with financial or medical records