Blogged: Invite Guest users in a Entra ID Multi-tenant setup
damienbod.com/2026/03/09/i...
#graph #entra #mau #identity #iam #entraid #oauth #openidconnect #oidc #security
Latest posts tagged with #OpenIDConnect on Bluesky
Blogged: Invite Guest users in a Entra ID Multi-tenant setup
damienbod.com/2026/03/09/i...
#graph #entra #mau #identity #iam #entraid #oauth #openidconnect #oidc #security
Passkeys are great until your amr claim says the wrong thing. Damien Bowden covers returning pop correctly and requiring phishing resistant auth via acr_values in ASP.NET Core.
#aspnetcore #openidconnect #passkeys
OAuth 2.0 and OIDC Explained with UML
A blog by Ronald
The purpose of Open Authorization 2.0 (OAuth 2.0) is...
#dev #softwaredevelopment #Security #OpenIDConnect #UML #Authentication #OAuth2.0 #OIDC #Authorization #SSO #SingleSign-On
jdriven.com/blog/2026/03/OAuth-2.0-E...
Should you add rate limiting to your Duende IdentityServer deployment? 🤔
Our new article breaks down the why (and why not), plus 3 implementation options.
Read the full article 👉 duende.link/87wrkjh
#dotnet #ASPNETCore #OAuth #OpenIDConnect
Updated: OpenIddict examples using BFF with Angular and Vue.js
github.com/damienbod/bf...
github.com/damienbod/bf...
Support for passkeys.
#aspnetcore #dotnet #angular #vuejs #bff #openiddict #openidconnect #oidc #passkeys
OpenID Connect signing key rotation is an essential part of modern security 🔒
We break down the technical & compliance requirements, and how Duende IdentityServer's automatic key management ensures zero-downtime rotation.
duende.link/yhwsz42
#OpenIDConnect #OAuth2 #dotnet
Sync-in 2.0 ajoute l’authentification OpenID Connect
Une bonne nouvelle pour les entreprises, la version apporte une fonctionnalité attendue par la communauté d'utilisateurs
Tous les détails ici 👇
www.it-connect.fr/sync-in-2-0-...
#SyncIn #OpenIDConnect #DevOps #Tech
🔐 SAML heeft ons ver gebracht, maar de wereld is niet meer alleen browser-based. Onze collega Floris Deutekom legt uit waarom OpenID Connect een volwaardig alternatief zou moeten worden voor DigiD, eHerkenning en eIDAS. Niet als vervanging, maar als aanvulling voor moderne, API-gedreven […]
Blogged: Secure the swiyu container using a YARP proxy
damienbod.com/2026/02/09/i...
#swiyu #yarp #aspire #aspnetcore #dotnet #identity #network #oauth #openidconnect #oidc
OpenID Connect signing key rotation is an essential part of modern security 🔒
We break down the technical & compliance requirements, and how Duende IdentityServer's automatic key management ensures zero-downtime rotation.
duende.link/yhwsz42
#OpenIDConnect #OAuth2 #dotnet
OpenID Connect signing key rotation is a non-negotiable part of modern security 🔒
We break down the technical and compliance requirements, and how Duende IdentityServer's automatic key management ensures zero-downtime rotation.
duende.link/yhwsz42
#OpenIDConnect #OAuth2 #Security #dotnet
That's a wrap on 2025! 🚀 We delivered over 1,042 merged PRs, achieved FAPI 2.0 certification for IdentityServer, launched multi-frontend BFF v4, and added #dotnet 10 support across the board.
Read our year-end review: duende.link/by32025
#dotnet #security #OpenIDConnect
That's a wrap on 2025! 🚀 We delivered over 1,042 merged PRs, achieved FAPI 2.0 certification for IdentityServer, launched multi-frontend BFF v4, and added #dotnet 10 support across the board.
Read our year-end review: duende.link/by32025
#dotnet #security #OpenIDConnect
Blogged: Set the amr claim when using passkeys authentication in ASP.NET Core
damienbod.com/2026/01/05/s...
#oauth #openid #openidconnect #iam #security #aspnetcore #dotnet #passkeys #fido2 #mfa
That's a wrap on 2025! 🚀 We delivered over 1,042 merged PRs, achieved FAPI 2.0 certification for IdentityServer, launched multi-frontend BFF v4, and added #dotnet 10 support across the board.
Read our year-end review: duende.link/by32025
#dotnet #security #OpenIDConnect
We built our own JWT Decoder tool, available at jwt.me! 🧐
Quickly inspect and validate your JSON Web Tokens. It features automatic public key (JWK) retrieval, inline claim explanations, and presenter mode.
Read all about it: duende.link/387skhq
#OAuth #OpenIDConnect #JWT #TokenValidation #dotnet
With the .NET 10 LTS released, now is the time to look into upgrading #IdentityServer4 to Duende IdentityServer!
Fix known vulnerabilities and future-proof your security. Get support, FAPI 2.0 compliance, and more.
duende.link/uwo974g
#IdentityServer4 #OAuth2 #OpenIDConnect #dotnet
Blogged: Implement a secure MCP server using OAuth DPoP and Duende identity provider
damienbod.com/2025/11/03/i...
#aspnetcore #mcp #llm #duende #openidconnect #oidc #oauth #dpop #jwt #openai #ai
Mocking the provider, not the protocol, made our Playwright tests stable and predictable – no more brittle logins, captchas or MFA chaos.
Read how we did it: neworbit.co.uk/blog/post/un...
#IntegrationTesting #OpenIDConnect #OIDC #Playwright #DevOps
Blogged: Use swiyu, the Swiss E-ID to authenticate users with Duende and .NET Aspire
damienbod.com/2025/10/27/u...
#swiyu #eid #identity #duende #aspnetcore #dotnet #aspire #openid #openidconnect #oauth #vdc #iam
Blogged: Implement a secure MCP OAuth desktop client using OAuth and Entra ID
damienbod.com/2025/10/16/i...
#mcp #entra #oauth #identity #iam #llm #oidc #openidconnect #ai
AuthFix Introduces AI‑Driven Automated Repair for OpenID Connect Bugs
AuthFix, an AI‑driven tool, automatically repaired 17 of 23 real OpenID Connect bugs, a 74 % success rate using LLM‑generated patches validated by Petri‑net model checking. Read more: getnews.me/authfix-introduces-ai-dr... #authfix #openidconnect
How 'Login with Google' Works: The Magic of OAuth 2.0 and OpenID Connect youtu.be/kBH6Z77FJjg?... via @YouTube #sdntechforum #OAuth2 #OpenIDConnect #SingleSignOn #Cybersecurity
Blogged: Implement a secure MCP server using OAuth and Entra ID
damienbod.com/2025/09/23/i...
#aspnetcore #dotnet #mcp #oauth #openidconnect #oidc #openai #llm #agent #entra #entraid #ai
Hands-on: Master API Security w/ OAuth2, OpenID Connect & Token Exchange (RFC 8693).
Delegated access + service-to-service auth, with practical demos.
Details: https://f.mtr.cool/yyhdiqgrvc
#APISecurity #OAuth2 #OpenIDConnect #RFC8693
Next video from our Identity & Access Control workshop: OpenID Connect
We cover tokens, scopes, the #aspnetcore OpenID Connect handler, the userinfo endpoint, token management, refresh tokens, and more.
www.youtube.com/watch?v=c41R...
#identityserver #aspnetcore #oauth2 #openidconnect #dotnet
KeyConf #Amsterdam is happening tomorrow, and we're all looking forward to it for all things #Keycloak!
We will discuss everything #identity, #passkeys, #security, and #openidconnect. Join us on-site or in the #livestream: keyconf.dev!
Really looking forward to the .NET day 2025 in Zurich.
www.dotnetday.ch/speakers/dam...
Security is so exciting at present with so many new problems to solve.
#openid #oauth #owasp #iam #identity #passkeys #mfa #openidconnect #devSecOps #eid #swiyu #mcpoauth #sast #sbom .NET Day Switzerland
Duende IdentityServer 7.3 lowers the barrier for developers starting with security - you can get a proof of concept #identityserver and #aspnetcore client in less than 5 minutes!
Watch the video: youtu.be/NaHSpMCRrto
#openidconnect #security #dotnet
#Keycloak at #FrOSCon - we shared how you can run a #sovereign identity management, and listened to the stories of those who are already using it.
Rewatch "Delegate #authentication and a lot more to Keycloak with #OpenIDConnect":
🎥 media.ccc.de/v/froscon202...
🎞️ speakerdeck.com/ahus1/delega...