Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
brokenwren
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
10 ms
·
31.
▲
by
brokenwren
6y ago
NOTE: that I'm the founder of FusionAuth. Just thought I would mention that FusionAuth is powering a bunch of huge public internet applications with millions of MAU. Our largest customers have 10s of millions of total users as well. We
32.
▲
Integrating with FusionAuth Using PHP
(fusionauth.io)
1 points
by
brokenwren
7y ago
|
0 comments
33.
▲
by
brokenwren
7y ago
As the founder of FusionAuth ( https://fusionauth.io ), let me relay 5 years of experience in building our platform in bullet points (not exhaustive by any means, but a rough overview). Also note that these aren't all authent
34.
▲
by
brokenwren
7y ago
Gzip isn't going to compress as well as a binary format would. SVG is XML and while it has text components that can be compressed, it will reach limits. Plus, if you compress the binary, it could be reduced even further. Using a byte e
35.
▲
by
brokenwren
7y ago
Why would it be dying? If anything, most companies are using it more. I'd like to see a binary format for SVG to make them smaller but keep the scalability.
36.
▲
OAuth Device Authorization for Roku, AppleTV, Xbox
(fusionauth.io)
12 points
by
brokenwren
7y ago
|
2 comments
37.
▲
Software Development Is a Creative Endeavor
(developer.okta.com)
2 points
by
brokenwren
7y ago
|
0 comments
38.
▲
Got users? How about 100M of them?
(fusionauth.io)
5 points
by
brokenwren
8y ago
|
4 comments
39.
▲
by
brokenwren
8y ago
Please present an argument and data to back this up.
40.
▲
Save a CPU – Ditch BCrypt, Use SHA2 Instead
(fusionauth.io)
6 points
by
brokenwren
8y ago
|
3 comments
41.
▲
by
brokenwren
8y ago
Is anyone going to actually pay $11,500 for a domain name this week?
42.
▲
Making Node.js Auth Suck Less
(fusionauth.io)
4 points
by
brokenwren
8y ago
|
1 comments
43.
▲
by
brokenwren
8y ago
Not very many of them apparently.
44.
▲
Using the FusionAuth Setup Wizard
(fusionauth.io)
4 points
by
brokenwren
8y ago
|
0 comments
45.
▲
by
brokenwren
8y ago
Yeah, we work on this issue all the time as well and see all of these solutions (and others). I agree that (A) definitely feels like sessions. However, I disagree that (C) is error prone. Here are answers to your questions on (C) plus how F
46.
▲
by
brokenwren
8y ago
Exactly. JWTs can't be extended since the signature is part of the JWT and signs the JSON body, where the expiration is.
47.
▲
by
brokenwren
8y ago
Randall Degges has a blog post on this. It's pretty good actually: https://developer.okta.com/blog/2017/08/17/why-jwts-suck-as-...
48.
▲
by
brokenwren
8y ago
I'll add on to what @robotdan mentioned. A distributed cache is basically a Webhook approach to pushing cached values around. If your Webhooks (or whatever you want to call them really) are transactional, then the state sync is handled
49.
▲
by
brokenwren
8y ago
These are strategies I've seen. Here are some issues with each: 1. The shorter the lifetime, the more JWTs and refreshes are needed. This includes the signing and verification, both of which can be heavy operations depending on key len
50.
▲
Revoking JWTs (JSON Web Tokens)
(fusionauth.io)
42 points
by
brokenwren
8y ago
|
23 comments
51.
▲
by
brokenwren
8y ago
Thanks for the heads up. We'll get that information incorporated into the piece.
52.
▲
Developers guide to GDPR
(fusionauth.io)
14 points
by
brokenwren
8y ago
|
3 comments
53.
▲
by
brokenwren
8y ago
Matt, you guys should switch JHipster to FusionAuth! Less IBM-ness you know. ;)
54.
▲
by
brokenwren
8y ago
Try asking for an SLA or any feature development or 24/7 support. You'll see why people think Okta and Auth0 are expensive. ;)
55.
▲
by
brokenwren
8y ago
Haha. I try to be upfront that I work for FusionAuth. I mentioned it in my other comments in the thread but forgot to mention it here. Thanks for keeping me honest. ;)
56.
▲
by
brokenwren
8y ago
FusionAuth is free. Less pain, more awesome! ;) And it integrates with AAD and ADFS.
57.
▲
by
brokenwren
8y ago
Elastic provides a much more scalable and fast search for freeform user attributes. Using the databases search works in some cases but when you have freeform data (for example favoriteColor), it breaks down quickly. While Elastic can be a b
58.
▲
by
brokenwren
8y ago
I've heard that Cognito is very limited in terms of features and can be a headache to get working properly. I haven't used Cognito, but I work for FusionAuth ( https://fusionauth.io ) and we have a number of developers t
59.
▲
by
brokenwren
8y ago
> Authentication is just too important to completely outsource without recourse I agree 100%. You need to own your users and all of their data. Along those same lines, I wouldn't want my user data going into a multi-tenant, cloud-
60.
▲
by
brokenwren
8y ago
I'm surprised no one has mentioned FusionAuth ( https://fusionauth.io ). It's free, has a Python library, and the features that most apps need. There are a couple of people using Python with FusionAuth right now. The com
More ›