OAuth terminologies and flows explained - OAuth tutorial - Java Brains

แชร์
ฝัง
  • เผยแพร่เมื่อ 10 มิ.ย. 2024
  • In this tutorial, you’ll learn a couple of things. First you’ll learn about some key key terminologies used in OAuth. These are terms you will encounter in OAuth implementations, articles and pretty much anything to do with OAuth. And once you have learned that, you will understand how some of the important OAuth flows work in detail. OAuth has a lot of different variety of flows, but there are few key ones that you really should be knowing. Which you will by the end of this tutorial.
    Java Brains website: javabrains.io
    #JavaBrains #BrainBytes #WhatIs #OAuth #Java #Tutorial #Concept

ความคิดเห็น • 234

  • @bubut123
    @bubut123 2 ปีที่แล้ว +131

    Nobel Prize-winning physicist, Richard Feynman had once said: “You know you have mastered a skill, when you can teach it to a child”. Why? Because it forces yourself to understand the concept at a deeper level and simplify relationships and connections between ideas. Great Job Koushik! Thanks.

  • @zss123456789
    @zss123456789 4 ปีที่แล้ว +213

    *Timestamps*
    0:00 Intro
    1:34 Term 1: Resource
    2:24 Term 2: Resource Owner
    3:14 Term 3: Resource Server
    3:52 Term 4: Client
    5:00 Who has the burden of security? (Ans: Resource Server)
    6:51 Term 5: Authorization Server
    7:54 OAuth Flow 1 *Authorization* *Code* *Flow*
    14:09 OAuth Flow 2: *Implicit* *Flow*
    15:50 Drawback of Implicit Flow
    18:30 OAuth for authorization between services
    19:24 OAuth Flow 3: *Client* *Credentials* *Flow* (for microservices)
    22:20 Wrap-up

    • @melsaied101
      @melsaied101 4 ปีที่แล้ว +1

      This is so appreciated 👍👏🤝🙏

    • @OooohReally
      @OooohReally 3 ปีที่แล้ว +1

      23:10 Go rule the world

    • @OooohReally
      @OooohReally 3 ปีที่แล้ว

      @Beau Ace Another bot comment "Joined Mar 6, 2021" reporting this account

    • @ommishra9581
      @ommishra9581 3 ปีที่แล้ว

      How different it is from SAML

    • @isaackase4762
      @isaackase4762 2 ปีที่แล้ว

      you all probably dont give a shit but does any of you know of a tool to log back into an Instagram account..?
      I somehow forgot my password. I would love any assistance you can give me.

  • @farhannazmul4902
    @farhannazmul4902 4 ปีที่แล้ว +58

    The tutorial is too good to having clearer view on Oauth flows. Hats off to the author

  • @phuang3
    @phuang3 3 ปีที่แล้ว +99

    I just don't understand why some people would thumb down on this tutorial. In fact, all the tutorials from this channel are excellent. I learned a lot from them

    • @tombaxter2879
      @tombaxter2879 2 ปีที่แล้ว

      I can't believe anyone would give this a thumbs up! Are you the author's cousin or something?

    • @phuang3
      @phuang3 2 ปีที่แล้ว +8

      @@tombaxter2879 You mean he's got 4771 cousins or something? If you don't like this channel, show us yours.

    • @tombaxter2879
      @tombaxter2879 2 ปีที่แล้ว +2

      @@phuang3 Relax. This particular video was bad, it doesn't mean the whole channel was bad.
      Whose rule is it that says you can't comment on the quality of a video unless you, yourself have your own channel?
      Grow up.

    • @swarnendustudy1792
      @swarnendustudy1792 2 ปีที่แล้ว +2

      because they are history student came here to learn computer science

    • @shenth27
      @shenth27 2 ปีที่แล้ว

      Some people don't like his accent sadly.

  • @maxs6803
    @maxs6803 4 ปีที่แล้ว +29

    Hands down the best style of introducing technical material, that I have ever seen. Your videos are so easy to follow. I'm glad you start with concepts and examples, before going into the jargon.

  • @awabelmahe9700
    @awabelmahe9700 3 ปีที่แล้ว +1

    Man, you have a gift for clearly explaining things, thank you very much for theses great videos.

  • @kirangem
    @kirangem 10 หลายเดือนก่อน

    I must thank you for making me understand it in a better, simplified way. Your deep understanding on the topic is adorable. Once, again thank you

  • @classawarrior
    @classawarrior 4 ปีที่แล้ว +12

    Your style of explanation / teaching is really top-notch! Great work

  • @mahesh_kndpl
    @mahesh_kndpl 3 ปีที่แล้ว +1

    He made this so simple. He knows the art of teaching.

  • @birqan
    @birqan 4 ปีที่แล้ว +3

    Thank you very much again for this clean explanation. I appreciate you very much.

  • @basamnath3021
    @basamnath3021 3 ปีที่แล้ว +8

    Amazing explanation. Hope my son in college gets a "resource" (professor) like you. God Bless You

  • @sambitplus
    @sambitplus 4 ปีที่แล้ว +1

    Very well explained. One of the best videos that explains OAuth

  • @abukasozi295
    @abukasozi295 4 ปีที่แล้ว +4

    Amazing lesson JB once AGAIN..great stuff!!

  • @mohammedsardar3779
    @mohammedsardar3779 4 ปีที่แล้ว

    Thanks Koushik. Got to learn more about OAuth in meaningful and useful way. Please keep teaching more.

  • @Vlad_Logvin
    @Vlad_Logvin 2 ปีที่แล้ว

    Thanks! I'm from Belarus and sometimes to hard to parse bad pronunciation, but yours is very clearly. Very useful explanation, one of the best learning channels!

  • @luciferbhoi
    @luciferbhoi ปีที่แล้ว +1

    Wow ...trust me i have seen 10+ videos on this topic on TH-cam. But the way you are explaining... someone who is from commerce or arts background also will understand everything..😛

  • @madhanseran3764
    @madhanseran3764 4 ปีที่แล้ว +4

    This is an awesome explanation. It just had what I wanted to clarify.... Thbskd watching this video. thanks and kudos to you sir

  • @ameyapatil1139
    @ameyapatil1139 4 ปีที่แล้ว +1

    Respect for making such a video ! Superb skill of teaching.

  • @conaxlearn8566
    @conaxlearn8566 4 ปีที่แล้ว

    Love the way the topic is presented!

  • @rajeevg4683
    @rajeevg4683 4 ปีที่แล้ว +1

    Thanks Kaushik. Amazing video with the right set of analogies used at the right place. Kudos. 👍

  • @alirabee7649
    @alirabee7649 17 ชั่วโมงที่ผ่านมา

    Thank you for your great efforts . you are the best to simplify such complex concepts

  • @bhanuprakash2465
    @bhanuprakash2465 ปีที่แล้ว

    You are a master of many concepts which many people want to learn.Kudos to You Kaushik.

  • @solomonrajkumar5537
    @solomonrajkumar5537 4 ปีที่แล้ว

    I really loved it... the way you explained and it is clear and emphasizing examples !!!

  • @AndresFelipeGonzalezMelendez
    @AndresFelipeGonzalezMelendez ปีที่แล้ว

    You are the best java channel out there! great job!

  • @immortalveejay
    @immortalveejay 4 ปีที่แล้ว +16

    Thanks Kaushik , This series on OAuth2 is amazin

  • @Timbaktu640
    @Timbaktu640 2 ปีที่แล้ว

    Explained very well. Thank you for clearing this concept

  • @satanrasool1802
    @satanrasool1802 ปีที่แล้ว

    Always... best tutorials from Java Brains.

  • @doingsneakypeakylike
    @doingsneakypeakylike 2 ปีที่แล้ว

    Your videos are a blessing! Thank you!

  • @sumit1234567891011
    @sumit1234567891011 ปีที่แล้ว

    Accidently found one video by Java brains, and this is my fifth video back to back, so additive ( things I understood in past with partial knowledge and getting confused time and again, explained o me here like a baby). I have seen many videos but no one explained like you did. Thanks a ton. Please put a link where views can make some donations if they are happy. I would love to do that

  • @harrywang6792
    @harrywang6792 2 ปีที่แล้ว +2

    Thank you!!!! I never know what "client" site means until now. There are so many things on the internet, and unfortunately people just assume it's common knowledge and don't bother explain them, which makes the process so much harder and frustrating. Thank you for taking the time

    • @tarknural5963
      @tarknural5963 2 ปีที่แล้ว

      Client in any concept is the service(person, program, computer, platform) that requests something from some distributed remote server.

  • @danielhaile9073
    @danielhaile9073 ปีที่แล้ว

    Thanks for making it simple to understand the big concept .

  • @clement1370
    @clement1370 2 ปีที่แล้ว

    Great job, with you its easy to understand !

  • @kirancs6217
    @kirancs6217 2 ปีที่แล้ว

    Very good and crystal clear explanation with good analogy. Thanks for sharing this core concept

  • @ayoolajohn
    @ayoolajohn 3 ปีที่แล้ว

    This explanation is amazing. Thanks!

  • @akashnag3879
    @akashnag3879 4 ปีที่แล้ว

    best explanation of oauth. thank you very much

  • @atulsurjuse2916
    @atulsurjuse2916 ปีที่แล้ว

    Excellent explanation in details..!! Thank you..:)

  • @rajeewvishvakarma6974
    @rajeewvishvakarma6974 2 ปีที่แล้ว

    awesome tutorial !!! It got a great understanding on this topic and it clarifies my doubts too. thank you.

  • @sambhavsharma5875
    @sambhavsharma5875 2 ปีที่แล้ว

    You are a lifeSaver Man. Thank You so Much Sir.

  • @shreyasdeshpande1064
    @shreyasdeshpande1064 4 ปีที่แล้ว +1

    Crystal clean concepts as always :) Thanks Koushik!

  • @rashmisingh2894
    @rashmisingh2894 4 ปีที่แล้ว

    Thank you so much for explaining it so beautifully

  • @suryaprakashnayak7263
    @suryaprakashnayak7263 4 ปีที่แล้ว

    Superb Koushik. Really helpful. Thaks again.

  • @sayantanray9595
    @sayantanray9595 4 ปีที่แล้ว

    Informative and useful!!!!

  • @gayathirimahalingam3867
    @gayathirimahalingam3867 2 ปีที่แล้ว

    The idea of picturizing the concepts and telling a story to explain the concepts is extremely helpful and captivating sir! Thanks a lot! I derive immense sense of satisfaction on viewing your videos. Any such videos on docker and kubernetes please?

  • @ingdabit
    @ingdabit 3 ปีที่แล้ว

    Great job. Thanks a lot for making this video.

  • @codeblooded
    @codeblooded 4 ปีที่แล้ว +8

    Awesome video, thanks !!
    Can you also cover concept of challenge in OAuth, and how enterprise SSO works with OAuth.

  • @cdhebar
    @cdhebar 4 ปีที่แล้ว

    Great style to explain!

  • @sanyukta99
    @sanyukta99 6 หลายเดือนก่อน

    Great explanation! Thank you dudee✨

  • @AP-sb3vl
    @AP-sb3vl 3 ปีที่แล้ว

    Thanks for the effort, very well explained.

  • @jingyuchang1885
    @jingyuchang1885 2 ปีที่แล้ว

    This is a great tutorial. Thanks

  • @irfansiddiqui9458
    @irfansiddiqui9458 2 ปีที่แล้ว

    Very well explained, thanks

  • @praveenp4221
    @praveenp4221 2 ปีที่แล้ว

    Loved your awesome explanation!!

  • @roiunger7796
    @roiunger7796 4 ปีที่แล้ว

    You are a supreme teacher!

  • @MrVipulLal
    @MrVipulLal ปีที่แล้ว

    Well explained. Thanks!

  • @rajkhare5949
    @rajkhare5949 3 ปีที่แล้ว

    wow...very good explanations...i really enjoyed your teaching style!!..Thanks for making such a good efforts!

  • @jafarimamaliyev1736
    @jafarimamaliyev1736 7 หลายเดือนก่อน

    You are amazing bro. Thank you for everything

  • @sriplano748
    @sriplano748 10 หลายเดือนก่อน

    Brilliant explanation 💯💯

  • @shobhitbaluni1441
    @shobhitbaluni1441 2 ปีที่แล้ว

    You made this topic very easy to understand.. nice 👌

  • @Another0neTime
    @Another0neTime 4 ปีที่แล้ว

    Nice work. Thank you!

  • @ashwinihegde1882
    @ashwinihegde1882 3 ปีที่แล้ว

    Amazing presentation skills 👍

  • @natiusjr
    @natiusjr ปีที่แล้ว

    very nice tutorial, thanks so much

  • @yinebebtariku1617
    @yinebebtariku1617 ปีที่แล้ว

    great respect, It is an easy to start tutorial.

  • @kanishkumar6176
    @kanishkumar6176 4 ปีที่แล้ว

    your tutorials are awesome ....

  • @jayantaghosh7678
    @jayantaghosh7678 3 ปีที่แล้ว

    Awesome Explanation !!

  • @PriyeshMishra1
    @PriyeshMishra1 4 ปีที่แล้ว

    Thanks Kaushik , was eagerly waiting for this video

  • @MrNSK2000
    @MrNSK2000 3 ปีที่แล้ว

    Excellent tutorial!!

  • @kundankumarpathak7924
    @kundankumarpathak7924 2 ปีที่แล้ว

    Great stuff man You helped clear my interview. Got the offer from company 🔥

  • @MickBisignani
    @MickBisignani 3 ปีที่แล้ว

    Excellent content! Kudos my friend

  • @mohamedbasuney8871
    @mohamedbasuney8871 4 ปีที่แล้ว +8

    Hello, Thank you for your great efforts,
    could you please cover sso with active Directory and Apache server ?

  • @TarunKumarSaraswat
    @TarunKumarSaraswat 3 ปีที่แล้ว

    Wow, amazing explanation 🙏

  • @chrisk.9097
    @chrisk.9097 4 ปีที่แล้ว

    It makes sense now. Thanks!

  • @AshisRaj
    @AshisRaj 3 ปีที่แล้ว

    Superb explanation

  • @pascal3889
    @pascal3889 3 ปีที่แล้ว

    Great explanation Kaushik! The animations makes the illustrations way better. I would love to see you do a system design playlist which can go over the web architecture and design of various large scale applications like Netflix, Uber and Facebook. Most videos on youtube are done on the white board. It will be great if you can do one with animations. Thanks!

  • @LuisGonzalez-dq4bg
    @LuisGonzalez-dq4bg 2 ปีที่แล้ว

    You are the BEST!

  • @sainathpatil6893
    @sainathpatil6893 3 ปีที่แล้ว

    Excellent explanation, before this video series, i always afraid about Spring Security. many thanks

  • @elephant742
    @elephant742 4 ปีที่แล้ว +1

    Hi Kaushik. Thanks a lot for providing such great content. You are doing great service to the community.
    Can you please release few videos on saml as well ? What is saml and how does it differ from oauth and how to implement it using spring boot .

  • @andrewbutz5590
    @andrewbutz5590 4 ปีที่แล้ว +2

    Thanks, very helpful video! A few questions on the third flow, Client Credentials:
    1. You mention that micro service 2 has an authentication server. But in the terminology we only talked about an authorization server--is this indeed a different thing, or did you mean to say authorization and not authentication?
    2. In the second step, after MS1 goes to the MS2 Auth server, it receives an access token for, you say, only the API calls that it should have access to. But how does the auth server know what MS1 should have access to? My guess here is that this is indeed an authentication server, and that the server is meant to know ahead of time who MS1 is and what kind of access it should have, and that this is what is meant by a super trustworthy client, but I'd like to confirm if this is correct.

  • @federicoestape4111
    @federicoestape4111 3 ปีที่แล้ว

    Hi there, thanks for your amazing tutorials, they are very helpful!
    One question, in the first OAuth flow (the one with the authorization token in the middle) once the client gets his access token, is it short-lived as well as OAuth flow 2? or does it last longer? or forever?
    thanks again! Cheers!
    Federico from Argentina :)

  • @khalidal-reemi3361
    @khalidal-reemi3361 2 ปีที่แล้ว

    very nice video. Doupts are cleared. Subscribed and liked. 👍

  • @ALEEMKHAWAR1
    @ALEEMKHAWAR1 2 ปีที่แล้ว

    very well explained.

  • @lathamanian
    @lathamanian 4 ปีที่แล้ว

    Thanks! lucid explanation, well presented. Slightly J as well :)

  • @gagangowda9928
    @gagangowda9928 3 ปีที่แล้ว

    You, sir, are a legend.

  • @java3711
    @java3711 4 ปีที่แล้ว +5

    Thank you sir, could you please cover open id connect as well.

  • @dikshitrajkhowa
    @dikshitrajkhowa 3 ปีที่แล้ว

    Amazing explanation

  • @sciab3674
    @sciab3674 4 หลายเดือนก่อน

    thanks brother, good tutorial

  • @vaibhavsharma7055
    @vaibhavsharma7055 4 ปีที่แล้ว +5

    Thanks Kaushik for such a wonderful video very clearly explained like you always do.
    I just wanted to know why implicit flow is less secured??
    although in both kind of flows(authorization and implicit flow) client application has access token which can be used to access the protected resource from resource server.

  • @aarontian5979
    @aarontian5979 2 ปีที่แล้ว

    awesome tutorial

  • @SameeraSenarathna
    @SameeraSenarathna 3 ปีที่แล้ว

    Great Stuff. Thank you

  • @yasharrahvar5923
    @yasharrahvar5923 4 ปีที่แล้ว +1

    Thank you for this. What is the best way to store the access token, refresh token, ... in your node layer for later to use? How to know if the user is still logged in so we don't ask them for credentials if they close the browser?

  • @DANIELMADHURE
    @DANIELMADHURE 4 หลายเดือนก่อน

    I think this is one of the best explanations so far. Is there a similar video on SAML and OIDC flow on your channel?

  • @juliusarieskannehjr2172
    @juliusarieskannehjr2172 2 ปีที่แล้ว

    Very nice introduction sir. I love your teachings. It helps me so much in understanding complex concepts which seems very difficult to me before.
    Sir, as honest request, can you please teach the implementation (demo) on the three flows you mentioned in this tutorial. Please sir👏
    And thanks so much for these lessons.

  • @niteshshetty6873
    @niteshshetty6873 3 ปีที่แล้ว

    Thanks. It was Brilliant

  • @senburbensgaming
    @senburbensgaming 3 ปีที่แล้ว

    Thanks for the tutorial. Please make another one on OpenID Connect protocol.

  • @nishant07kumar
    @nishant07kumar 3 ปีที่แล้ว +1

    it will be great if you start a series on SOLID and Design Pattern in Java/any oops language. I know there are lots of material out there on internet related to these but I believe your way of teaching style will help out lots of ppl. and if you do please try to make each SOLID principle example not related to each topic. Thanks

  • @sumitdas-kr6fe
    @sumitdas-kr6fe 3 ปีที่แล้ว

    great explanation

  • @JeremiBenquar1995
    @JeremiBenquar1995 3 ปีที่แล้ว

    Finally found an Indian that makes sense :) Thank you! Subscribed.

  • @maverickmaverick5
    @maverickmaverick5 2 ปีที่แล้ว

    Loved watching it! Can you create a single flow chart showing all the flows in one frame ? for non-implicit and implicit flows ?

  • @esparda07
    @esparda07 2 ปีที่แล้ว

    Thank you so much.

  • @lts8683
    @lts8683 2 ปีที่แล้ว

    Thanks very much 🥰.
    Please make others vedio about spring boot very very very advanced

  • @kamaldevarapalli2895
    @kamaldevarapalli2895 3 ปีที่แล้ว

    Excellent

  • @gustavomonte6672
    @gustavomonte6672 3 ปีที่แล้ว

    Thank you very much