CAPIE - Chapter 1.3 Authentication and Authorization
CAPIE - Chapter 1.3 Authentication and Authorization
3 API
authentication
&
authorization
1. Introduction
2
2. Basic authentication
3
3. Api keys
4
4. Bearer tokens
5
5. OAuth
7
7. Openid connect
8
8. Api keys vs tokens vs jwt
● Comparative analysis.
● Pros & cons.
● Best scenarios for each.
● Usage in OAuth & other scenarios.
9
9. Role based access control(rbac)
11
10. Attribute-based access control(abac)
13
12. Common Vulnerabilities & Mitigations
14