66°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • Trondheim and Copenhagen

    May
    2
    May
    …
    May
    9
    May 2, 2022 at 10:00am (-0700)
    through May 9, 2022 at 5:00pm (+0200)
    8 days
    Trondheim
    Trondheim, Trøndelag, NO
    permalink #oauth #okta #oktadev #osw
    • Portland (PDX) to Salt Lake City (SLC)
      May 2, 2022 from 10:15am (-0700) to 1:01pm (-0600)
      Delta Flight 2226
      Salt Lake City (SLC) to Amsterdam (AMS)
      May 2, 2022 at 2:35pm (-0600) until May 3 at 8:15am (+0200)
      Delta Flight 56
      Amsterdam (AMS) to Trondheim (TRD)
      May 3, 2022 from 2:20pm to 4:30pm (+0200)
      KLM Flight 1175
      Vaernes in Trondheim
      permalink #okta #oauth #osw
    • OAuth Security Workshop

      May
      4
      May
      5
      May
      6
      May 4, 2022 at 9:00am (+0200)
      through May 6, 2022 at 6:00pm (+0200)
      3 days
      Scandic Nidelven
      1-3 Havnegata, Trondheim, Trøndelag, NOR
      permalink #oauth #okta #oktadev #security #osw
      • App Integrity Attestations for OAuth

        May
        6
        May 6, 2022
        11:30am - 12:00pm (+0200)
        Scandic Nidelven
        1-3 Havnegata, Trondheim, Trøndelag, NOR
        OAuth Security Workshop
        View Slides
        Currently, the security of native apps in OAuth is contingent upon registering the app's callback URL with the operating system, preferably as an app-claimed HTTPS URL. While this provides some level of assurance of the app's identity, it is by no means foolproof.

        Authenticating whether a particular instance of a public client in OAuth is a legitimate instance remains a challenge.

        This session will explore the possibility of using Apple and Android’s “app attestation” APIs as a form of OAuth client authentication. These APIs are able to leverage on-device private keys and a certificate chain to provide an additional level of confidence that the app making an HTTP request is the same code that was shipped in the app stores.
        permalink #oauth #security #osw #osw7
    • Trondheim (TRD) to Copenhagen (CPH)
      May 8, 2022 from 8:35am to 10:10am (+0200)
      SAS Flight 2889
      Kastrup in Copenhagen
      permalink #okta #oktadev #osw
Posted in /trips using quill.p3k.io

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv