Get hands-on experience with 20+ free Google Cloud products and $300 in free credit for new customers.

Oauth2 with OpenId connect in Apigee

Not applicable

Hello, I am asking you today because I am at a dead end. I have missed piece in the logic of Oauth2 and OpenID connect in apigee.

I understand that an application request Openid connect to have the profile of the loggedin user and that OAuth2 offers a way for an application to access a protected resource via an access token.

Now we take a scenario where a protected resource needs to verify that the logged in user is himself that has taken the authorization token, is this illustration that I have done here is good or I make things complicated?

6049-authentication-sequence.png

0 6 1,727
6 REPLIES 6