Kerangka Materi
Pengenalan
- Gambaran struktur JWT
- Kasus penggunaan umum JWT
Validasi JWT
- Tanda tangan token simetris
- Tanda tangan token asimetris
- Memvalidasi token
- Memvalidasi klaim
JWT yang Dicuri
- Mengatasi JWT yang dicuri
- Penyimpanan JWT
- Menginvalidasi JWTs
Manajemen Kunci Kriptografi
- Gambaran kunci rahasia
- Memasukkan kunci publik
- Memasukkan URL yang berisi kunci
Mengeksploitasi JWTs
- Pendekatan brute force
- Memodifikasi algoritma RS256 menjadi HS256
- Pendekatan none algorithm
Rangkuman dan Langkah Selanjutnya
Persyaratan
- Pengetahuan dasar tentang layanan web
Audience
- Pengembang
Testimoni (5)
The Trainor gives more samples which really helps a lot.
Romulo - Tribal Software Philippines, Inc.
Kursus - Advanced TypeScript
The training has good content and easy to follow
David Phetole Leshabela - Vodacom SA
Kursus - React with Next.js
Simplification of new complex techniques
Brian Zaranyika - Vodacom SA
Kursus - React Native Expo
The breadth of the topis covered was quite a bit and the trainer tried to do justice to that.
Lakshmipriya Sivakumar - Deque Systems Inc
Kursus - Spring Boot, React, and Redux
The trainer seemed very knowledgable about Vue. I appreciated seeing his development style and learning some new concepts to try.