1/37
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai | Chat |
|---|
No analytics yet
Send a link to your students to track their progress
What is OpenID Connect (OIDC)?
An identity layer built on top of OAuth 2.0 that provides user authentication and federated Single Sign-On (SSO).
What role does OAuth 2.0 play in authentication?
OAuth 2.0 provides authorization, allowing an authenticated user to grant a client application access to protected resources using an Access Token.
What does an ID Token issued by OIDC contain?
It contains user identity, authentication timestamps, the issuer (Okta), and other claims like email and name.
What is the purpose of an Access Token in OAuth 2.0?
An Access Token is used to access protected APIs/resources and proves that the application has authorization, along with the granted scopes and user context.
What are some OAuth Grant Types for confidential clients?
Confidential clients can use Authorization Code Flow with Client Secret and Client Credentials Flow.
What must you configure before integrating an OIDC app in Okta?
You must configure an Authorization Server, including scopes, claims, and access policies.
What does the Redirect URI do in OIDC Integration?
It is where Okta sends the authentication response and ID Token.
What information is required to integrate an OIDC app in Okta?
Redirect URI, Initiate Login URI, Client ID, and Client Secret.
What is the role of the Client Secret?
The Client Secret is used for confidential client authentication and is stored securely.
What must be configured in WordPress when integrating via miniOrange?
Client ID, Client Secret, Okta Authorization Server URL, and endpoints (issuer, token, authorize).
What does a successful Redirect URI signify?
It receives successful authentication responses from the Okta Authorization Server.
What is the difference between ID Token and Access Token?
ID Token proves the user's identity while the Access Token proves the app's permissions.
What does Okta act as in the OIDC and OAuth 2.0 process?
Okta acts as the Authorization Server and Identity Provider (IdP).