Getting Started with Spring Authorization Server

Published: 14 January 2022
on channel: SF AI & Java Users
8,407
120

The Spring Authorization Server project provides support for OAuth 2.1 Authorization Framework, OpenID Connect Core 1.0 and the numerous extension specifications.

The primary goal of this talk is to demonstrate how to securely configure a Spring Authorization Server deployment using identified trust boundaries. The IETF draft, OAuth 2.0 Security Best Current Practice, will be referenced and recommendations will be provided for preventing attacks and implementing mitigations using defense in depth strategies.

The following will be discussed and demonstrated.

Current Features
Starting up with default configuration
Customizing the configuration
Adding custom features via extension
Feature Roadmap

Joe Grandja is a core committer on the Spring Security team. He has been leading the efforts in building the next generation of OAuth 2 and OpenID Connect support in Spring Security and Spring Authorization Server.

With over 25 years of industry experience, his job roles have covered Solution Architect, Software Engineer, Team Lead and Consultant. His past experience has been mainly focused in the Financial Services sector in the Toronto, Canada area. He has designed, built and delivered enterprise grade banking applications/platforms in the Personal/Commercial and Brokerage/Investing divisions. He has worked closely with the InfoSec teams within the banks to ensure security and regulatory compliance.


On this page of the site you can watch the video online Getting Started with Spring Authorization Server with a duration of hours minute second in good quality, which was uploaded by the user SF AI & Java Users 14 January 2022, share the link with friends and acquaintances, this video has already been watched 8,407 times on youtube and it was liked by 120 viewers. Enjoy your viewing!