App Access Control in 2018 (OAuth2 + OpenID)

One thing I’ve struggled with for the past few years is how to properly do authentication and authorization for web applications – but specifically, ASP.NET Web API (and now, ASP.NET Core Web API). In my professional opinion, building “API first”

Posted in .NET Core, ASP.NET, Best-practices, Cloud Computing, Computers and Internet, General, Infrastructure, New Technology, Security

Setting up developer-specific configuration with .NET Core

I’m working on a project that I will likely make a public repo on GitHub. However, it has credentials for an SMTP server. I would like to set it up so that the code that is checked-in, is generic and

Posted in .NET Core, Best-practices, Computers and Internet, General, Security

webCA – A web-based certificate authority (Dockerized)

There are a couple of things I strongly disagree with in the computing industry. Probably the biggest, is how SSL certificates got started. The Problem: In my view, instead of making Public Key Infrastructure free, open, and smart (like what

Posted in .NET Core, Docker, General, Infrastructure, Linux, Open Source, Organization will set you free, Security, Uncategorized, Windows

