Two Factor Authentication
- RFCs:
- RFC7662 OAuth 2.0 Token Introspection https://tools.ietf.org/html/rfc7662
- RFC6749 OAuth 2.0 Authorisation framework https://tools.ietf.org/html/rfc6749
- RFC5849 OAuth 1.0 https://tools.ietf.org/html/rfc5849
- RFC2616 Hyper Text Transfer Protocol https://tools.ietf.org/html/rfc2616
- https
- SSH
nginx authentication (background)
- basic https://docs.nginx.com/nginx/admin-guide/security-controls/configuring-http-basic-authentication/
- validating OAuth 2.0 Access Tokens https://www.nginx.com/blog/validating-oauth-2-0-access-tokens-nginx/
References
- EVA ICS https://eva-ics.readthedocs.io/en/3.2.4/faq.html
- vouch to an okta server https://developer.okta.com/blog/2018/08/28/nginx-auth-request
- okta https://developer.okta.com/docs/
- 2FA with php https://medium.com/@richb_/easy-two-factor-authentication-2fa-with-google-authenticator-php-108388a1ea23
- Google authenticator https://support.google.com/accounts/answer/1066447?co=GENIE.Platform%3DAndroid&hl=en
- TOTP https://www.twilio.com/blog/2013/04/add-two-factor-authentication-to-your-website-with-google-authenticator-and-twilio-sms.html
- nginx and Google Authenticator https://medium.com/lasso/use-nginx-and-lasso-to-add-google-authentication-to-any-application-d3a8a7f073dd