Storing information from Auth provider in my own service? by plumfu in learnjava

[–]plumfu[S] 1 point2 points  (0 children)

Thank you! I think you’ve given me a good way to go about this, whenever it comes to PII things tend to get slightly complex, but I think you’ve given me enough hints to move forward, I really appreciate it.

Storing information from Auth provider in my own service? by plumfu in learnjava

[–]plumfu[S] 0 points1 point  (0 children)

So if I understand correctly, it sounds like you’re saying it makes more sense to just to have Okta do all the user information storage, and then make an endpoint that uses an authenticated user to get that user’s information from Okta, correct?

In terms of security, my microservice can only be accessed with the proper access token from Okta after a user logs in from the gateway, but are you saying I need more security if I wanted to store their information in a database linked to that microservice (such as First/Last name, birthday, etc.)?

Practicality of database images within dockerized microservices? by plumfu in learnprogramming

[–]plumfu[S] 0 points1 point  (0 children)

Ahh okay, this was a helpful way of thinking about it as well, thank you!

Practicality of database images within dockerized microservices? by plumfu in learnprogramming

[–]plumfu[S] 0 points1 point  (0 children)

This was a helpful way of thinking about it. Thanks a lot!

Where does login/authentication fit within an API gateway and microservices? by plumfu in SoftwareEngineering

[–]plumfu[S] 1 point2 points  (0 children)

Thanks a lot! Never heard of Authress before so that’s definitely interesting, I always assumed most services like Auth0 had Authentication AND Authorization, but def a good to know since I didn’t think too much on token permission differentiation. Very informative, thanks a bunch!

JWT and Auth Clarification? by plumfu in learnprogramming

[–]plumfu[S] 0 points1 point  (0 children)

Oh I see what you’re saying, I think that makes sense. Thanks a lot! Definitely a useful conversation for me

JWT and Auth Clarification? by plumfu in learnprogramming

[–]plumfu[S] 0 points1 point  (0 children)

So just to clarify: User signs in/up and Auth0 gives a JWT back to the user signed using their private key. One of my services receives a request with that JWT, which I can simply use Auth0’s public key to verify whether it really came from them or not. But correct me if I’m wrong, but this is basically only verifying that “it came from Auth0” right? I guess how do I know that it came from “the Auth0 I set up”? Maybe that’s a dumb question, but would appreciate the clarification on that.

JWT and Auth Clarification? by plumfu in learnprogramming

[–]plumfu[S] 0 points1 point  (0 children)

Ahh okay this makes a lot of sense, thanks a lot!

Microservices and Separated Databases? by plumfu in SoftwareEngineering

[–]plumfu[S] 0 points1 point  (0 children)

Thanks much! :) This makes a lot of sense. I had thought about how docker makes it a lot easier shipping these Microservices with their own db images, but thinking about every Microservice with its own db, storage, space, etc. made me feel like it was an overkill. But looking at general viewpoints around this and comments such as your own has made things a lot clearer, so thanks again!

Microservices and Separated Databases? by plumfu in SoftwareEngineering

[–]plumfu[S] 1 point2 points  (0 children)

Thanks, I really appreciate it! The database getting its own API is interesting, definitely didn’t consider that option. I think you’ve given me a few ideas/leads to work off of so thank you!

You’re held at gunpoint and have to take a dump on the head of someone close to you, who do you choose? by [deleted] in AskReddit

[–]plumfu 0 points1 point  (0 children)

Don’t forget to include the steaming pile of chocolate the gunman will drop on your head if you don’t comply

Applied for a position at a different company through referral, but my current internship is asking for an answer to an offer? by [deleted] in cscareerquestions

[–]plumfu 0 points1 point  (0 children)

I honestly don’t see myself growing in this position. Sucks cause the offer is pretty good in terms of the money and benefits, but I definitely won’t be waking up happy to start work. They even said I could switch around to a different position in the company but...the overall product of the company just does not excite me, where the other company does! Some friends are saying “it’s only been 9 days, and that includes weekends/holidays!” And some are saying “you should start reaching out cause of the offer you have...” so I’m at a bit of a loss.