The sign-in journey: browser, provider, session and API

Coming soon
FoundationalDifficulty: Foundational
DeveloperAudience: Developer
Security practitionerAudience: Security practitioner
Secure accessPurpose: Secure access

Wave 2 · Interactions · T02.11

Coming soon — this article is being prepared. Below are its question, intended outcome, and place in the story.

The question

How do sign-in participants hand off and verify identity evidence?

What we will work through

Draw browser, provider and API boundaries while distinguishing sessions from tokens.

Before you begin

Familiarity with the overview: Authentication, authorization, and sessions: separate responsibilities

Articles

Color theme

Language

Home