The AWS Developers Podcast

Navigating Machine-to-Machine Security


Listen Later

In this episode, Seb and Abram Douglas dive deep into OAuth 2.0 and the challenges of machine-to-machine (M2M) authentication. They unpack the security trade-offs between API keys and the client credentials grant flow, explaining how Amazon Cognito can generate time-bound access tokens and use Lambda triggers for token customization. The conversation highlights token claims, secure verification methods, and how API Gateway integrates with Cognito for simplified authorization. Seb and Abram also explore fine-grained access control using Amazon Verified Permissions and outline best practices like securing secrets with AWS Secrets Manager, rotating client credentials, and enabling AWS WAF. Finally, they look ahead to the role of AI agents in secure M2M communication, stressing the importance of user consent, identity propagation, and robust token management in future architectures.

With Abrom Douglas, Solution Architect, Amazon Cognito

    • Empower AI agents with user context using Amazon Cognito
      Cognito User Pool
      Client Credentials Flow, OAUth 2 specification
  • ...more
    View all episodesView all episodes
    Download on the App Store

    The AWS Developers PodcastBy Amazon Web Services

    • 4.7
    • 4.7
    • 4.7
    • 4.7
    • 4.7

    4.7

    24 ratings


    More shows like The AWS Developers Podcast

    View all
    The Changelog: Software Development, Open Source by Changelog Media

    The Changelog: Software Development, Open Source

    289 Listeners

    The a16z Show by Andreessen Horowitz

    The a16z Show

    1,084 Listeners

    Software Engineering Daily by Software Engineering Daily

    Software Engineering Daily

    626 Listeners

    Talk Python To Me by Michael Kennedy

    Talk Python To Me

    585 Listeners

    Data Engineering Podcast by Tobias Macey

    Data Engineering Podcast

    146 Listeners

    Darknet Diaries by Jack Rhysider

    Darknet Diaries

    8,043 Listeners

    Tech Brew Ride Home by Morning Brew

    Tech Brew Ride Home

    961 Listeners

    Practical AI by Practical AI LLC

    Practical AI

    210 Listeners

    AWS Podcast by Amazon Web Services

    AWS Podcast

    203 Listeners

    AWS Morning Brief by Corey Quinn

    AWS Morning Brief

    79 Listeners

    The Stack Overflow Podcast by The Stack Overflow Podcast

    The Stack Overflow Podcast

    64 Listeners

    The Real Python Podcast by Real Python

    The Real Python Podcast

    142 Listeners

    Last Week in AI by Skynet Today

    Last Week in AI

    305 Listeners

    The AI Daily Brief: Artificial Intelligence News and Analysis by Nathaniel Whittemore

    The AI Daily Brief: Artificial Intelligence News and Analysis

    607 Listeners

    The Pragmatic Engineer by Gergely Orosz

    The Pragmatic Engineer

    64 Listeners