Identity + API Management Component Relationships
This diagram captures the relationships between concepts I’ve been writing about for a couple of years now.
Read article: Identity + API Management Component Relationships42 articles tagged Identity.
This diagram captures the relationships between concepts I’ve been writing about for a couple of years now.
Read article: Identity + API Management Component RelationshipsAt some point in the finite past, I had the good fortune to become involved in a project that was essentially completely greenfield. An unnamed company, in an unnamed industry decided to try something new. In a page right out of “The Innovator’s dilemma”, they spun up a new, separate organization,…
Read article: The Many Ways of Approaching Identity ArchitectureI’ve written blog posts on the following identity protocols. I’m creating this post to have a central place to refer to “identity protocols”. I will periodically update this list as I publish new posts with related material.
Read article: The Common Identity ProtocolsThis post provides a detailed view of what happens when my example API Proxy that integrates Apigee Edge and a Third-Party Identity Provider for OAuth2 use cases. The setup instructions are available here.
Read article: Apigee Edge and Third-Party Identity Provider Integration — Detailed ViewI’ve been building up to more complex federation use cases over the past year. In previous posts, we explored the details of OpenID Connect(OIDC) and WS-Federation (WS-Fed). In those posts, we covered basic scenarios of how to use each protocol to integrate one Relying Party (Service Provider,…
Read article: Identity Broker: An SSO Protocol Transition From OpenID Connect To WS-FederationThis blog post summarizes the details of how to deploy and configure the the Apigee Edge OAuth2 example that I put together. This example will use the OAuth2 Authorization Code Grant and Refresh Token Grant to demonstrate how OAuth2 can be used with Apigee Edge in a real-world application.
Read article: Apigee Edge OAuth2 and Third-Party Identity ProvidersI’m taking a brief excursion from my usual identity and API-centric posts to answer a question about performance tuning that someone asked me earlier this year. In a previous incarnation of my career, I was focused on performance tuning and diagnostics — particularly involving Java systems.…
Read article: Performance Tuning MethodologyThe power of end-to-end user security context with APIs
Read article: Identity Propagation in an API Gateway ArchitectureThis is a list of all the SAML2 vs JWT related posts I have written. This series explores SAML2 use cases, JWT use cases, the relevant specifications, and explores how the two technologies differ. The reader will see how identity federation technology has evolved over the past fifteen years.
Read article: SAML v2.0 vs. JWT SeriesThis post was originally published as “SAML 2.0 VS. JWT: UNDERSTANDING FEDERATED IDENTITY AND SAML” on the Levvel Blog.
Read article: SAML 2.0 VS. JWT: UNDERSTANDING FEDERATED IDENTITY AND SAML