https://img3.pixhost.cc/images/5393/765093431_yxusj-c821cb16xu2j.jpg
Practical Auth0: Login, APIs & Enterprise SSO
MP4 | Video: h264, 1920x1080 | Audio: AAC, 44.1 KHz, 2 Ch
Level: Intermediate | Genre: eLearning | Language: English | Duration: 4h 56m | Size: 4 GB

Most Auth0 material stops at the moment the login button works. This one keeps going - through token validation, API authorization, the extensibility pipeline, B2B multi-tenancy, enterprise SSO, and the operational work that keeps an identity system alive once real customers depend on it.

You will follow one company the whole way. Halcyon Travel is a booking platform with two products: a consumer app used by travellers, and a corporate travel product sold to companies. They rolled their own authentication in year one - bcrypt, a users table, hand-signed tokens, a signing key nobody has dared rotate since 2021. It creaks. Then a 4,000-seat enterprise prospect makes SAML single sign-on a contract condition, and the whole thing has to be rebuilt properly. Every concept in the course arrives because Halcyon hits a problem that needs it.

What the course covers

Foundations - authentication vs authorization, where Auth0 sits in the identity landscape, tenants, application types, connections, and the two APIs you will live in
OAuth 2.0 and OIDC properly - the authorization code flow step by step, PKCE and why public clients need it, client credentials, refresh token rotation, the flows you should never use, and the discovery and JWKS documents that make it all self-describing
Universal Login in Next.js - wiring the Auth0 Next.js SDK v4 with its middleware-mounted routes, sessions and rolling cookies, protecting server components and server actions, federated logout, and branding the login page
Tokens - what ID, access and refresh tokens are actually for, the anatomy of a JWT, how to validate one correctly (signature, issuer, audience, expiry, algorithm), why your access token might be opaque, and the antipatterns that cause real breaches
Securing an API - registering a resource server, requesting and enforcing scopes, protecting Express routes, Auth0 RBAC, the difference between roles, scopes and permissions, and an honest look at where RBAC stops scaling
Actions - the extensibility model that replaces Rules and Hooks before their 18 November 2026 end of life: triggers, the event and api objects, namespaced custom claims, external calls and secrets, testing and deployment
B2B: Organizations and enterprise SSO - the multi-tenancy problem, organization login flows, invitations and just-in-time membership, org-scoped roles, SAML and OIDC enterprise connections to Okta and Entra ID, and a full enterprise onboarding runbook
Production hardening - MFA, step-up authentication for high-risk actions, passkeys and passwordless, attack protection, custom domains, and the classic session vulnerabilities
Operations - logs and log streams, configuration as code with the Auth0 CLI and Terraform provider, dev to staging to production promotion, and migrating users off a legacy store without asking anyone to reset a password

You also get to do the work, not just watch it

10 auto-graded coding exercises that run in your browser - build a PKCE challenge, validate an ID token, screen a batch of hostile tokens, write scope-checking middleware, author Action handlers. Each one fails you for the specific mistake the lecture warned about, not just for a wrong answer
12 hands-on labs against your own free tenant, each with a self-check script that tells you what is wrong and where to look. You will trace an authorization code flow by hand, secure a real API, deploy an Action, stand up two organizations, and federate SAML between two tenants
10 section quizzes and a 30-question final exam, scenario-based rather than recall-based - most describe something going wrong and ask you to identify why
A two-part capstone: Halcyon's complete identity stack, consumer and enterprise, with a migration plan underneath both

https://i.postimg.cc/b8w1Pfr5/yxusj-4-Id-Ps-IDaa-S-Where-Auth0-Fits.jpg
https://img3.pixhost.cc/images/5393/765094161_yxusj-9w72m21keks8.jpg

Код:
https://rapidgator.net/file/9e6505132fa77c93eac2ba594229a4b1/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part1.rar
https://rapidgator.net/file/680025797c2ec2e845577e9c29323802/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part2.rar
https://rapidgator.net/file/9516c8715cfa2a832475e7f7643ffd4d/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part3.rar
https://rapidgator.net/file/17bb28ca110f27be4c7f9a2a85f8d8b9/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part4.rar
https://rapidgator.net/file/cad31c74d1420582e09e942159ff7f94/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part5.rar

DDownload

Код:
https://ddownload.com/895kw665ds8t/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part1.rar
https://ddownload.com/401jfdnfnx7i/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part2.rar
https://ddownload.com/0jz1cv1woxtz/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part3.rar
https://ddownload.com/zgx72x2ut2un/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part4.rar
https://ddownload.com/jlass0o7sj6l/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part5.rar

NitroFlare

Код:
https://nitroflare.com/view/5E6EF79B4682CF5/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part1.rar
https://nitroflare.com/view/FB82E665F4634A4/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part2.rar
https://nitroflare.com/view/E0205AF74B3BAC5/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part3.rar
https://nitroflare.com/view/03707352C2D6ECC/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part4.rar
https://nitroflare.com/view/879E6CCD6F72309/yxusj.Practical.Auth0.Login.APIs..Enterprise.SSO.part5.rar