SlideShare a Scribd company logo
OAuth 2.0
Simplified
Presented By Vanjikumaran
Image is in this Slides are taken from the internet and the base concept taken on [1]
[1] https://www.tbray.org/ongoing/When/201x/2013/05/24/Access-Token-Hotel-Key
On the way to Vacation!
And they found the HOTEL
HOTEL has RESOURCES
Security!!
Security!!!!!!!
Security!!!!!!!!!!!!!!!!!!!!!!!
Formal Request to HOTEL
VANJI’s Identity Card
HOTEL TOKEN
Finally Vanji got Access 2 * @ HOTEL
VANJI has access to RESOURCES
VANJI has access to room
Brid view Idea!
OAuth 2 Access Token
● An OAuth 2 access token is like a hotel-
room key card. It gives access, all by itself
without further checking, to a particular
resource!
● It’s issued to a particular person, who has to
be authenticated first (like by showing my
driver’s license at the check-in.)
OAuth 2 Access Token
● Nothing on the outside tells you who it’s
been issued to or what it’s for!
● It’s issued to a particular person, who has to
be authenticated first (like by showing my
driver’s license at the check-in.)
But!! 2 friends of him next to him!
TOM borrowed the HOTEL CARD
TOM has access to RESOURCES
TOM has access to VANJIs room
OAuth 2 Access Token
● It’s not encrypted, so you have to take care
of it (if a bad guy got it and knew what it was
for, he could get into my hotel room and rob
me blind.) Check.
● You can give it to someone else and have
them access the resource for you!
REVOKE HOTEL TOKEN!!!!!!!
OAuth 2 Access Token
● If you lose it, you can go back to the issuer
and get another one which is functionally
identical.
● It expires after a while.
READ MORE on OAuth 2.0
● http://oauth.net/2/
● http://tools.ietf.org/html/rfc6749

More Related Content

PDF
OAuth 2.0 (as a comic strip)
PDF
OAuth2 - The Swiss Army Framework
PPTX
Framework for hand gesture controlled video game
PPTX
SEJ Summit 2015: Upgrade Your Platform Without Sacrificing Your Rankings by C...
PPTX
Developing Enterprise Applications for the Cloud, from Monolith to Microservices
PPTX
Platform & Application Modernization
PDF
Stateless authentication with OAuth 2 and JWT - JavaZone 2015
PPT
Cloud Migration: Moving to the Cloud
OAuth 2.0 (as a comic strip)
OAuth2 - The Swiss Army Framework
Framework for hand gesture controlled video game
SEJ Summit 2015: Upgrade Your Platform Without Sacrificing Your Rankings by C...
Developing Enterprise Applications for the Cloud, from Monolith to Microservices
Platform & Application Modernization
Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Cloud Migration: Moving to the Cloud

More from Vanjikumaran Sivajothy (9)

PPTX
Peaceful Distributed Microservice Architecture
PPTX
Demystifying API Management for Serverless Services
PPTX
Best Practice With PLSQL
PPT
Sign Language recognition Presentation
PPTX
Software architectures
PPTX
Middleware Simplified
PDF
Android development beyond the basics
PPTX
Hello androidforyarlmeetup
PDF
Peaceful Distributed Microservice Architecture
Demystifying API Management for Serverless Services
Best Practice With PLSQL
Sign Language recognition Presentation
Software architectures
Middleware Simplified
Android development beyond the basics
Hello androidforyarlmeetup
Ad

Recently uploaded (20)

PPTX
Introduction to Information and Communication Technology
PDF
An introduction to the IFRS (ISSB) Stndards.pdf
PDF
Triggering QUIC, presented by Geoff Huston at IETF 123
PDF
Best Practices for Testing and Debugging Shopify Third-Party API Integrations...
PPTX
artificial intelligence overview of it and more
PPTX
international classification of diseases ICD-10 review PPT.pptx
PPTX
presentation_pfe-universite-molay-seltan.pptx
PPTX
522797556-Unit-2-Temperature-measurement-1-1.pptx
PPTX
Digital Literacy And Online Safety on internet
PPTX
Introuction about WHO-FIC in ICD-10.pptx
PPTX
Slides PPTX World Game (s) Eco Economic Epochs.pptx
PDF
Testing WebRTC applications at scale.pdf
PPTX
INTERNET------BASICS-------UPDATED PPT PRESENTATION
PDF
Unit-1 introduction to cyber security discuss about how to secure a system
PPTX
Introduction about ICD -10 and ICD11 on 5.8.25.pptx
PPTX
innovation process that make everything different.pptx
PDF
Automated vs Manual WooCommerce to Shopify Migration_ Pros & Cons.pdf
PDF
Cloud-Scale Log Monitoring _ Datadog.pdf
PDF
Decoding a Decade: 10 Years of Applied CTI Discipline
PPTX
PptxGenJS_Demo_Chart_20250317130215833.pptx
Introduction to Information and Communication Technology
An introduction to the IFRS (ISSB) Stndards.pdf
Triggering QUIC, presented by Geoff Huston at IETF 123
Best Practices for Testing and Debugging Shopify Third-Party API Integrations...
artificial intelligence overview of it and more
international classification of diseases ICD-10 review PPT.pptx
presentation_pfe-universite-molay-seltan.pptx
522797556-Unit-2-Temperature-measurement-1-1.pptx
Digital Literacy And Online Safety on internet
Introuction about WHO-FIC in ICD-10.pptx
Slides PPTX World Game (s) Eco Economic Epochs.pptx
Testing WebRTC applications at scale.pdf
INTERNET------BASICS-------UPDATED PPT PRESENTATION
Unit-1 introduction to cyber security discuss about how to secure a system
Introduction about ICD -10 and ICD11 on 5.8.25.pptx
innovation process that make everything different.pptx
Automated vs Manual WooCommerce to Shopify Migration_ Pros & Cons.pdf
Cloud-Scale Log Monitoring _ Datadog.pdf
Decoding a Decade: 10 Years of Applied CTI Discipline
PptxGenJS_Demo_Chart_20250317130215833.pptx
Ad

OAuth2 simplified