Topic mix

Authentication & authorization

17 moments from 15 videos · 45:14 min total

Navigate the complexities of managing user identity, session security, and access controls with these expert-led conference session moments.

Full-stack role-based authorization in 45 minutes
Play section Introduction to user authentication and authorization concepts
Introduction to user authentication and authorization concepts thumbnail

Introduction to user authentication and authorization concepts

Differentiating between identity verification and access authorization establishes a strong foundation for full-stack security patterns.

Play section Representing user rights through stateful or stateless authentication
Representing user rights through stateful or stateless authentication thumbnail

Representing user rights through stateful or stateless authentication

Transmitting user role information natively through web tokens ensures the user interface dynamically reflects valid permissions.

Un-complicate authorization maintenance
Play section Differentiating authentication and authorization in modern web applications
Differentiating authentication and authorization in modern web applications thumbnail

Differentiating authentication and authorization in modern web applications

While identity providers handle user verification, the application must natively govern valid resource operations.

Play section Enforcing multi-factor authentication inside dynamic authorization policies
Enforcing multi-factor authentication inside dynamic authorization policies thumbnail

Enforcing multi-factor authentication inside dynamic authorization policies

Tracking secondary authentication signals during sensitive policy checks helps mitigate compromised primary session credentials.

Decoupled Authorization using Policy as Code
Play section Evaluating common authentication and custom authorization challenges
Evaluating common authentication and custom authorization challenges thumbnail

Evaluating common authentication and custom authorization challenges

While standardized authentication methods exist, custom authorization integrations often lack unified tooling and create isolated administrative silos.

Meet Your New BFF: Backend to Frontend without the Duct Tape
Play section Securing entities with declarative authentication and authorization rules
Securing entities with declarative authentication and authorization rules thumbnail

Securing entities with declarative authentication and authorization rules

Integrating standard cookie session tokens restricts endpoint visibility natively and simplifies interface security states seamlessly.

Increased Performance and Developer Productivity with Jakarta EE 11
Play section Security enhancements and concurrent authentication mechanisms
Security enhancements and concurrent authentication mechanisms thumbnail

Security enhancements and concurrent authentication mechanisms

How concurrent authentication mechanisms and programmatic authorization rules enable fine-grained access control.

Delegating the chores of authenticating users to Keycloak
Play section Restricting application access by intercepting early login flows
Restricting application access by intercepting early login flows thumbnail

Restricting application access by intercepting early login flows

Intercepting unauthorized network participants early during the core authentication phase to improve broad system authorization security.

Small, Secure, Interconnected: The next Internet Protocol
Play section Merging application authorization layers with network identity states
Merging application authorization layers with network identity states thumbnail

Merging application authorization layers with network identity states

Extending foundational network handshake protocols into unified authentication boundaries allows teams to systematically protect proprietary systems.

Architecting API Security
Play section Designing APIs for security from day one
Designing APIs for security from day one thumbnail

Designing APIs for security from day one

Prioritizing early architectural design prevents critical authorization and authentication flaws commonly found in real-world application deployments.

Rethinking React State Management: The Power of Built-In Solutions
Play section Combining native tools for user authentication state management
Combining native tools for user authentication state management thumbnail

Combining native tools for user authentication state management

Constructing an application-wide authorization state by weaving contexts, reducers, and state transformers together.

Kubernetes Security - Challenge and Opportunity
Play section Managing cluster access securely with admission control
Managing cluster access securely with admission control thumbnail

Managing cluster access securely with admission control

Controlling access to the API server requires robust authentication, strict authorization for common operations, and admission controllers for granular permissions.

GenAI Security: Navigating the Unseen Iceberg
Play section Addressing vulnerabilities in model context protocol and retrieval frameworks
Addressing vulnerabilities in model context protocol and retrieval frameworks thumbnail

Addressing vulnerabilities in model context protocol and retrieval frameworks

Implementing data retrieval capabilities at scale necessitates careful management of state, authentication, and authorization policies to prevent data leakage.

WeAreDevelopers LIVE - 11ty and a11y
Play section Preserving authentic author voice when drafting technical literature
Preserving authentic author voice when drafting technical literature thumbnail

Preserving authentic author voice when drafting technical literature

Depending on generative algorithms to draft entire articles creates emotionally detached outputs that lack distinct character and tone.

Beyond Kafka & RabbitMQ: Why NATS is the Future of Microservices Messaging
Play section Managing multi-tenancy and authentication with open-source operators
Managing multi-tenancy and authentication with open-source operators thumbnail

Managing multi-tenancy and authentication with open-source operators

Extending core capabilities through specialized operators facilitates granular access control and multi-tenant architectures inside complex enterprise deployments.

One Developer Journey, Two Surfaces
Play section Integrating developer docs and product experiences seamlessly
Integrating developer docs and product experiences seamlessly thumbnail

Integrating developer docs and product experiences seamlessly

How bridging the gap between product workflows and documentation creates an immersive developer experience.

Rest API Antipatterns
Play section Simplifying the Russian doll URL nesting architecture
Simplifying the Russian doll URL nesting architecture thumbnail

Simplifying the Russian doll URL nesting architecture

Why deeply nested URL paths overcomplicate API security and create redundant authorization checks.

Your mix. Instantly.

More mixes