YoVDO

Public Key Caching Strategies for Token Signature Validation - DevSecCon

Offered By: DevSecCon via YouTube

Tags

JSON Web Tokens Courses OAuth 2.0 Courses Public Key Cryptography Courses Asymmetric Cryptography Courses Key Management Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore public key caching strategies for token signature validation in this DevSecCon conference talk. Delve into the world of modern access delegation and consumer authentication protocols, focusing on OAuth2 and OpenID Connect. Learn about JSON Web Tokens (JWTs) and their implementation using asymmetric cryptography. Understand the importance of public key verification for token trust and the performance benefits of local key storage and caching. Examine the challenges posed by dynamic key management and the need for cache refreshing when token signing keys are changed. Compare different caching strategies, including "On-Demand Refresh," "Regular Refresh," and "Refresh on Expiry," evaluating their performance and security trade-offs. Gain valuable insights into the benefits and liabilities of each approach, enabling you to make informed decisions about implementing public key caching in your own systems.

Syllabus

Intro
What We Are Going to Cover Today
Brief Intro: Assymmetric (Public Key) Cryptography
Brief Intro: JSON Web Token (JWT)
Brief Intro: OAuth 2.0 and OpenID Connect
Public Key Management Options
Rationale for Public Key Caching
"On-Demand Refresh" Caching Strategy
'Regular Refresh Caching Strategy
Refresh on Expiry' Caching Strategy
Recommendations


Taught by

DevSecCon

Related Courses

Asymmetric Cryptography and Key Management
University of Colorado System via Coursera
Криптографические методы защиты информации
National Research Nuclear University MEPhI via edX
Applied Cryptography
University of Colorado System via Coursera
Securing Data with Asymmetric Cryptography
Pluralsight
CompTIA Security+ (SY0-601) Cert Prep: 3 Cryptography Design and Implementation
LinkedIn Learning