66°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • Aaron Parecki https://aaronparecki.com/   •   Jun 3
    weirdnesses:

    • Their token endpoint requires setting a User-Agent header, otherwise responds with an HTML error
    • Client secrets are a signed JWT using ECDSA + SHA256
    • An email address isn't returned even when requesting the `email` scope
    Aaron Parecki
    If you're interested, here is my sample code I was able to use to get an access token and ID token from Apple

    https://github.com/aaronpk/sign-in-with-apple-example
    Portland, Oregon, USA
    Mon, Jun 3, 2019 3:20pm -07:00
    31 likes 12 reposts 2 replies
    • Even André Fiskvik
    • Map/
    • Neojet
    • Kevin
    • Aidan Britnell
    • Ryan Cummins
    • Rosemary Orchard @ WWDC
    • Karl Sander
    • HilliTech
    • Ben Hager
    • Caio
    • Nelson Minar
    • nicholas troutman
    • Andrew Wooster
    • Pieter Montoulieu
    • Yannick Spark 🏁
    • Markos Charatzas
    • Storm Slade
    • Mike VanDelinder
    • Farasath Ahamed
    • Tim Bakker
    • Kristof Neirynck
    • damienbod
    • Jarek Pendowski
    • real realDonaldTrump
    • Sven A. Schmidt
    • Evan Prodromou
    • Edo Pelawi
    • Simen Berge
    • Manuel Moya Roldan
    • Eric Young
    • Eric Young
    • Asim Aslam
    • Jonathan Channon
    • damienbod
    • Farasath Ahamed
    • 奥野賢太郎 Crescware
    • Hiroyuki Ushito/kes
    • @herestomwiththeweather@mastodon.social
    • Caio
    • Tim Weston
    • HilliTech
    • Rosemary Orchard @ WWDC
    • Kévin Chalet twitter.com/PinpointTownes
      Looks like non-standard private_key_jwt client authentication to me 😁
      Tue, Jun 4, 2019 8:20am +00:00 (via brid-gy.appspot.com)
    • Dominick Baier twitter.com/leastprivilege
      Looks like code flow without PKCE to me ;)
      Tue, Jun 4, 2019 6:01am +00:00 (via brid-gy.appspot.com)
Posted in /replies using quill.p3k.io

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv