3 ms·
Integrating with auth0 required so much code that I don't quite understand the point or what value they're adding. Maybe they are! It's just not obvious. What i
by dustingetz 7y ago
Integrating with auth0 required so much code that I don't quite understand the point or what value they're adding. Maybe they are! It's just not obvious. What is obvious is they didn't make it easy.
- WorldMaker 7y agoIt's basically the same amount of code that you would add for any one other OAuth/OpenID Connect provider. The value they add, at the most superficial level is that you only have to do that once, as opposed to N times for Facebook, Google, Apple, Microsoft, etc. Admittedly, when you are doing it N times there is a lot more code you can share so its more O(log N) additional code. Also, at this point I think haveibeenpwned makes it very clear that having a password database in 2020 is a huge liability, and any options that move passwords out of your own databases and into someone else's problem seems like the smart idea. (I'm not affiliated with Auth0, but I have used them for projects where Azure AD didn't make sense, as I do fear owning passwords in my database in 2020.)