Stu Frankish
banner
stufrankish.dev
Stu Frankish
@stufrankish.dev
Just your run of the mill, quirky IT guy. I write software for work & for fun and I love my cats 🙂

Adopt, Adapt, Improve.
Reposted by Stu Frankish
Adding .NET 10 Passkey Support to Duende IdentityServer

👉 duende.link/berqe86

Learn how to add #dotnet 10 passkey support to a non-Blazor project such as MVC or Razor Pages.

#security #aspnetcore #identity #webauthn
Duende Software - Identity and Access Management for .NET
We help companies using .NET to build identity and access control solutions for modern applications.
duende.link
November 27, 2025 at 1:30 PM
Reposted by Stu Frankish
Let's look into a crucial "defense-in-depth" mechanism: SameSite cookies. Learn how this powerful browser flag adds extra protection against Cross-Site Request Forgery (CSRF) attacks.

Strengthen your #aspnetcore web applications!

youtu.be/goQlKiynWXU #dotnet
SameSite Cookies 🍪
Welcome back to Duende Software's web security series! In this video, we're looking into a crucial "defense-in-depth" mechanism: SameSite cookies. Learn how this powerful browser flag can add an…
youtu.be
November 27, 2025 at 1:45 PM
Reposted by Stu Frankish
Stop struggling with diverse identity providers. 🛑

A Federation Gateway, such as Duende IdentityServer, is the key to:
🔑 Centralized Compliance
⚡️ Operational Agility
👤 Unified User Login

duende.link/8aefizq

#IdentityOrchestration #SSO #Security #dotnet
Building a Federation Gateway with Duende IdentityServer: Strategies and Considerations for Identity Orchestration
Learn the core benefits of building a federation gateway that brings together Entra ID, Okta, SAML, Auth0 though a centralized authentication provider like DUende IdentityServer.
duende.link
November 24, 2025 at 1:30 PM
Reposted by Stu Frankish
📢 .NET 10 is here, but what about security? 🤔

In this post, we explore missing security features in #dotnet 10 and discover how Duende Software fills the gaps for Token Management, DPoP, Blazor, and OAuth 2.0 Introspection!

duende.link/q13yifc
Duende Software - Identity and Access Management for .NET
We help companies using .NET to build identity and access control solutions for modern applications.
duende.link
November 21, 2025 at 5:15 AM
Reposted by Stu Frankish
Adding .NET 10 Passkey Support to Duende IdentityServer

👉 duende.link/berqe86

Learn how to add #dotnet 10 passkey support to a non-Blazor project such as MVC or Razor Pages.

#security #aspnetcore #identity #webauthn
Duende Software - Identity and Access Management for .NET
We help companies using .NET to build identity and access control solutions for modern applications.
duende.link
November 10, 2025 at 7:30 AM
Reposted by Stu Frankish
Claims and scopes describe user information in OpenID Connect.

Let's see how Duende IdentityServer handles consent, different client types, required vs. optional scopes, and what happens when a client doesn't get everything it asked for.

duende.link/97aeqlj 👀

#dotnet #aspnetcore
Duende Software - Identity and Access Management for .NET
We help companies using .NET to build identity and access control solutions for modern applications.
duende.link
October 28, 2025 at 12:31 PM
Reposted by Stu Frankish
The Duende livestream is starting now!

Custom Authentication in #aspdotnet Core with Elin & Robert from Active Solution

🕐 Starting now (10:00 EST / 16:00 CEST)

Join us on YouTube ➡️ www.youtube.com/watch?v=o0MC...

#dotnet #security #identity
Building Custom Authentication in ASP.NET Core
Want to go beyond the built-in authentication handlers in ASP.NET? In this session, Robert Folkesson and Elin Fokine from Active Solution will break down what a RemoteAuthenticationHandler actually…
www.youtube.com
October 16, 2025 at 1:57 PM
Reposted by Stu Frankish
Secure your native applications, like mobile and desktop applications, using #IdentityServer 🔐

In this video, we cover why in-app login pages are outdated, the role of the browser, the Duende OidcClient library, secure token storage, and more!

youtu.be/7_OzM1c-STk #oauth #oidc #dotnet #identity
Mobile and Desktop Applications
Secure your native applications, like mobile and desktop applications using IdentityServer 0:00 Introduction 0:38 Anti pattern: In-app login page 1:19 Why not resource owner password flow? 2:03 Role…
youtu.be
October 2, 2025 at 12:15 PM