Authenticate with PAR, an underrated gem

OAuth 2.0 is widely used in digital applications for authentication and authorization, but it has security and scalability weaknesses. Pushed Authorization Request (PAR) addresses many concerns with the conventional flow. It is beneficial for high-security scenarios like finance and healthcare, as well as in handling large or complex requests.

Deleting Inactive Users in Auth0 with Okta Workflows

A while ago Okta announced the integration of Okta Workflows with Auth0. Bringing low-code automation to the Auth0 platform. In this blog post I am going to talk about leveraging Workflows to remove inactive users from a tenant. I am using this in a demo environment where I have people login to demonstrate passkeys (As … Continue reading Deleting Inactive Users in Auth0 with Okta Workflows

Connecting an Auth0 tenant to Okta Workflows

A while ago Okta announced the integration of Okta Workflows with Auth0. Bringing low-code automation to the Auth0 platform. In this blog post I am going to cover the setup steps for the integrations. In another blog post I give an example of deleting inactive users from a one of my conference demo instances. There … Continue reading Connecting an Auth0 tenant to Okta Workflows

Secure your tokens – an introduction to DPoP

𝐏𝐫𝐨𝐨𝐟-𝐨𝐟-𝐩𝐨𝐬𝐬𝐞𝐬𝐬𝐢𝐨𝐧 capabilities are becoming pivotal in ensuring application token security with the increasing adoption of OAuth-based access management. 𝐃𝐏𝐨𝐏, or 𝐃𝐞𝐦𝐨𝐧𝐬𝐭𝐫𝐚𝐭𝐢𝐧𝐠 𝐏𝐫𝐨𝐨𝐟 𝐨𝐟 𝐏𝐨𝐬𝐬𝐞𝐬𝐬𝐢𝐨𝐧 is a relatively new standard that comes with promising security features, especially for the internet-facing open applications.

2024, A new era for spatial computing, augmented reality and a world without passwords.

Two months into 2024, Apple finally released its new product, Apple Vision Pro. Apple claims the Apple Vision Pro is “a revolutionary spatial computer that seamlessly blends digital content with the physical world, while allowing users to stay present and connected to others.” The release of Apple Vision Pro opens up the world of multiple … Continue reading 2024, A new era for spatial computing, augmented reality and a world without passwords.

Managing FGA Relationships with Okta Identity Governance and Workflows

Overview This blog post will walk you through how to programmatically create and delete Tuples within Okta’s Fine Grained Authorization (FGA) product triggered by an Access Request in Okta Identity Governance (OIG). FGA is an early-stage product Okta is building to solve fine grained authorization at scale. FGA is a Relationship Based Access Control model … Continue reading Managing FGA Relationships with Okta Identity Governance and Workflows