Ceremonies
25:51
14 күн бұрын
Authentication Tales from the Field
25:01
Пікірлер
@BrightButNeverBurned
@BrightButNeverBurned 11 күн бұрын
Great topic but the presenters are demonstrating things we can't see. Is it expected that we only see the title slide the whole way through? 😢
@Ko_Ackerman
@Ko_Ackerman 4 ай бұрын
It's a shame we have no visual for the presentation.
@blockchainprofessor.x
@blockchainprofessor.x 6 ай бұрын
Hope they dub it CIDO. Picked up cido.eth today
@JM.TheComposer
@JM.TheComposer 7 ай бұрын
When will people finally realise: 1. Passkeys are generally protected by your phone's biometrics, so you lose 5th Amendment protections if Law Enforcement gets your phone and wants access. Biometrics are *not* Protected Speech! Precedent exists for forcing a suspect to unlock via fingerprint. Your PIN is Protected Speech, but you can't hide Passkeys behind a PIN if your screen lock is biometric. 2. Only the Private Key is needed for the FIDO2 Ceremony. Your biometrics release the Key, but the remote server can't truly verify what biometrics were used. So Passkeys are really 1FA, or at best "1.5FA".
@StijnHommes
@StijnHommes 7 ай бұрын
Passkeys are Here! What Now? Make sure you don't waste 25 minutes of your life watching a video about this nonsense (or worse, watch the speaker deliver it live). Now we need to make sure FIDO is disbanded and put on trial for criminal conspiracy for their plan to break the internet and take away our passwords.
@donsheppard9113
@donsheppard9113 8 ай бұрын
Unfortunately your slides did not show in my browser.
@lillianwalter2468
@lillianwalter2468 8 ай бұрын
Promo'SM
@JM.TheComposer
@JM.TheComposer 8 ай бұрын
Finally, someone realizes that passkeys aren't really 2FA.
@clintcurrie40
@clintcurrie40 11 ай бұрын
Once we all get chips implanted in our heads, then we will know who I am, who I am, who I am, who I am [slaps self upside the head]. What was I saying? : )
@DavidBrossard
@DavidBrossard Жыл бұрын
It was an honor and privilege to take part in the closing panel.
@jazmynmattie544
@jazmynmattie544 Жыл бұрын
𝓟Ř𝔬𝓂𝔬𝐒ϻ 💪
@atran2678
@atran2678 Жыл бұрын
Proud of you, Arthur!
@mvsk6852
@mvsk6852 Жыл бұрын
Hello There, thanks for the information. Do we have any video on how to set this OpenID connect with Nginx reverse proxy for SSO
@paypal7880
@paypal7880 2 жыл бұрын
You mentioned bearer tokens can be copied and replayed. Isn't that also true for a signed token? If a man in the middle, between the client and the resource server stole the signed token, can he not use it (until the expiry)?
@nandinidash7832
@nandinidash7832 2 жыл бұрын
Are you aware of your self-identity or living with misconception? kzfaq.info/get/bejne/gdVyq9Bhq7C9Y4k.html
@gatty.
@gatty. 2 жыл бұрын
My goodness that was a lot of information!
@gokhantaskan6225
@gokhantaskan6225 2 жыл бұрын
Thank you for the video!
@arianvanputten2908
@arianvanputten2908 2 жыл бұрын
How does this compare to device authorization grant (RFC 8628) ?
@lpgalmeida
@lpgalmeida 3 жыл бұрын
Next level. Thank you.
@BabbaYagga
@BabbaYagga 3 жыл бұрын
boring
@canelbuino7087
@canelbuino7087 3 жыл бұрын
This guy is proof that not all stoners are burnouts.
@gatty.
@gatty. 2 жыл бұрын
How come, did he mention he's smoked a fair amount in his past or something? He didn't say anything in his presentation. Either way, good on him for his bright future!
@sahilroyal8939
@sahilroyal8939 3 жыл бұрын
Difference between PingID and Ping SDK?
@domaincontroller
@domaincontroller 3 жыл бұрын
02:21 CSRF 08:22 token leakage 18:48 token reuse/misuse 26:16 question 1
@najah68
@najah68 3 жыл бұрын
great talk, great proposal for OAUTH improvement
@kierans777
@kierans777 3 жыл бұрын
I'm unable to view the slides. Following the link leads me to "Uploaded SlideShare Suspended"
@Vincent-bt4tv
@Vincent-bt4tv 3 жыл бұрын
dat face Victorrio. . .
@yuliiamaidanova3506
@yuliiamaidanova3506 4 жыл бұрын
Very inspiring and informative video! Our team implemented FIDO2 & WebAuthn in Jira marketplace.atlassian.com/apps/1222257/webauthn-for-jira?hosting=server&tab=overview Looking forward to hearing your thoughts on this)
@surensingh123
@surensingh123 4 жыл бұрын
Excellent talk !
@kernelfactory7839
@kernelfactory7839 4 жыл бұрын
Not sure I would call PING Federate the "Swiss Army knife". Here are some recent questions we asked the PING consultants: Can PF interface with Identity Manager? "NO" Can PF interface to DataPower API's? "NO" Can PF interface with TopSecret? "No". Pretty dull knife if you ask me.
@fritzoscar3847
@fritzoscar3847 4 жыл бұрын
For me, the whole "story telling" is so distracting from the topic I came here to learn about originally.
@mprat5673
@mprat5673 4 жыл бұрын
1 year later he wear the same clothe... hahaha kzfaq.info/get/bejne/eNtjmJiUq6q2lJs.html
@venkateshtheerthala748
@venkateshtheerthala748 4 жыл бұрын
how do i create a pingfederate account?
@TheRoxas13th
@TheRoxas13th 4 жыл бұрын
I love how he deep dive into the risk-based authentication. Great video!
@TheRoxas13th
@TheRoxas13th 4 жыл бұрын
The talk is so smooth and clear!
@TheRoxas13th
@TheRoxas13th 4 жыл бұрын
It was an insightful panel discussion! Thanks for bringing this up to the public guys.
@maheshraghavaraju9906
@maheshraghavaraju9906 4 жыл бұрын
:)
@nasimhazari6971
@nasimhazari6971 4 жыл бұрын
Great explanation! Thanks for sharing.
@TheRoxas13th
@TheRoxas13th 4 жыл бұрын
A nice introduction to the CIAM's challenges, but I think you need to explain more about the assessment, blueprint, and roadmap since those are the meat of this talk.
@TheRoxas13th
@TheRoxas13th 4 жыл бұрын
I wonder how privacy could have a business model.
@TheRoxas13th
@TheRoxas13th 4 жыл бұрын
So far I enjoy the video! So many things I don't know and excited to learn it!
@TheRoxas13th
@TheRoxas13th 4 жыл бұрын
This is a great introduction! Thanks
@jameslatham9805
@jameslatham9805 4 жыл бұрын
That was amazing! This guy really knows his sh*t!
@BunniChaithanya
@BunniChaithanya 4 жыл бұрын
Great Idea !!
@PSingletary
@PSingletary 4 жыл бұрын
Hey! :44
@vladimirklasnja5430
@vladimirklasnja5430 5 жыл бұрын
Great presentation. Richard is a such a wealth of knowledge. Two thumbs up!
@szeredaiakos
@szeredaiakos 5 жыл бұрын
So .. if i lost my finger/fingers and/or the key, i fall back to password which i don't remember since i used it 3 years ago, then whats the next? Final fallback? Email? Which is incidentally the main entry point of phishing. And after all that i'll probably be nervous enough not to check the domain a certain mail sends me to. And if i'd be a bad actor, i would still have a bright future ahead of me (especially with this widening of avenues of attack).
@fredrikwendt9696
@fredrikwendt9696 5 жыл бұрын
Just spending two weeks going for a swim (summer vacation) is enough to make my fingerprints not be recognized by my phone ...
@szeredaiakos
@szeredaiakos 5 жыл бұрын
@@fredrikwendt9696 LoL. Is that a thing? Definitely it will be something i look out for. Last summer i did not have any issues with the S9+ fingerprint sensor, yet i did not have my fingers wrinkled to the extreme.
@fredrikwendt9696
@fredrikwendt9696 5 жыл бұрын
@@szeredaiakos Summer vacation for me was 4 weeks with swimming/playing in the pool every day. I don't remember when the fingerprint sensor stopped recognizing me, but I know it took about 10 days after I got home before it started working again. Nokia 7+.
@petrg.3752
@petrg.3752 5 жыл бұрын
You should learn English, Vittorio. Your presentation is useless
@mohitvaish
@mohitvaish 5 жыл бұрын
Cool solution to a troublesome issue for so many IAM programs!