OAuth 2.0 study

Posted by Sungguk's lab on May 30, 2021

API Security 101

cookie is not suitable.

A problem of API Authorization

Past - XML, SOAP, SAML. WS-*.

Combine this data on the internet of things

XML was too verbose. Early mobile devices had query string length limitations on.

Present - JSON, HTTP APIs, Oauth & Open API connect.

Authentication: is the process of verify identify. - user name and password.

Authorization: is someone is allowed to do. - access to do