Search icon CANCEL
Subscription
0
Cart icon
Your Cart (0 item)
Close icon
You have no products in your basket yet
Arrow left icon
Explore Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Conferences
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
OAuth 2.0 Cookbook

You're reading from   OAuth 2.0 Cookbook Protect your web applications using Spring Security

Arrow left icon
Product type Paperback
Published in Oct 2017
Publisher Packt
ISBN-13 9781788295963
Length 420 pages
Edition 1st Edition
Tools
Arrow right icon
Author (1):
Arrow left icon
Adolfo Eloy Nascimento Adolfo Eloy Nascimento
Author Profile Icon Adolfo Eloy Nascimento
Adolfo Eloy Nascimento
Arrow right icon
View More author details
Toc

Table of Contents (9) Chapters Close

Preface 1. OAuth 2.0 Foundations FREE CHAPTER 2. Implementing Your Own OAuth 2.0 Provider 3. Using OAuth 2.0 Protected APIs 4. OAuth 2.0 Profiles 5. Self Contained Tokens with JWT 6. OpenID Connect for Authentication 7. Implementing Mobile Clients 8. Avoiding Common Vulnerabilities

Introduction


As the development of mobile applications increases, there is also an increase of API consumption, which needs to be performed securely. Native mobile applications are considered as public client types because of not being able to store confidential data as web applications. Because of the nature of native applications, the use of OAuth 2.0 might be hard to implement in a safe manner. In some cases, the most we can do is reduce the vulnerabilities or minimize the time window for an attack to be performed. The RFC 6749 by itself does not provide details on how to safely implement native mobile clients, which has been addressed by a recently published Request for Comments (RFC) at the time of writing, that is, RFC 8252—OAuth 2.0 for native apps.

This chapter will present you with how to implement native clients through an Android platform, using the grant types provided by OAuth 2.0 and some OAuth 2.0 profiles such as Proof Key for Code Exchange by OAuth Public Clients (PKCE) that...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $19.99/month. Cancel anytime
Banner background image