meta_pixel
Tapesearch Logo
Log in
Software Engineering Daily

Enhancing OAuth Security and Interoperability Using FAPI with Joseph Heenan

Software Engineering Daily

Software Engineering Daily

Technology, News, Tech News

4.2653 Ratings

🗓️ 14 November 2024

⏱️ 43 minutes

🧾️ Download transcript

Summary

FAPI is a refinement of the OAuth standard developed by the OpenID Foundation. It was conceived to solve a core problem of providing a consistent approach to API security across the financial industry, with the goal of enhancing interoperability of financial data exchange. It has now been adopted across many different industries in applications where

Transcript

Click on a timestamp to play from that location

0:00.0

FAPI is a refinement of the Oath standard developed by the Open ID Foundation.

0:05.0

It was conceived to solve a core problem of providing a consistent approach to API security across a financial industry,

0:11.2

with the goal of enhancing interoperability of financial data exchange.

0:15.3

It has now been adopted across many different industries and applications where there is an API that requires a heightened

0:20.9

authorization security implementation.

0:23.8

OTHLEET is a service that provides a set of APIs to implement Oath authorization servers

0:28.7

and Open ID Connect identity providers, allowing either to be easily made FAPE compliant.

0:34.6

Joseph Hinnon is the CTO at OTHLET, and he also leads the certification program at the Open ID Foundation.

0:41.1

He joins the podcast with Gerger Van to talk about the origins of FAPI, the motivations for its creation, the status of FAPI development, and more.

0:49.4

Gregor Vand is a security focused technologist and is the founder and CTO of MailPass.

0:55.4

Previously, Gregor was a CTO across cybersecurity, cyber insurance, and general software engineering companies.

1:02.0

He has been based in Asia Pacific for almost a decade and can be found via his profile at vand.hk.

1:22.8

Music his profile at vand.hk. Hi Joseph. Welcome to Software Engineering Daily.

1:26.4

Thanks, Gregor. Great to be here.

1:28.1

Yeah, Joseph, it's great to be speaking today.

1:30.4

We did have Offleet on the podcast.

1:33.3

I think it was back in April, and we learned a really good amount of things really around

1:38.2

the OAuth spec and the way that Offley implements that specifically.

1:42.8

But today we're going to be focusing on kind of a different piece of the Offly stack,

1:47.6

if we could call it that, which is FAPI.

1:50.0

And obviously we can get onto what on earth it is FAPI and what does it even stand for,

1:54.6

etc.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from Software Engineering Daily, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of Software Engineering Daily and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2025.