聯合登錄 & OAuth 2.0 & OpenID
第三方聯合登錄一般可以降低網站的獲客成本,所以一般的網站都會做一些聯合登錄,常用的就是QQ、微信、微博;
https://www.zoho.com.cn/accounts/help/federated-signin.html
https://www.zhihu.com/question/21387523
https://zhuanlan.zhihu.com/p/32491548
OAuth
OAuth 2.0
https://en.wikipedia.org/wiki/OAuth
https://img2018.cnblogs.com/blog/740516/202002/740516-20200205204757879-917858253.png
https://www.digitalocean.com/community/tutorials/an-introduction-to-oauth-2
OpenID
OpenID Connect, OIDC
https://en.wikipedia.org/wiki/OpenID
https://en.wikipedia.org/wiki/OpenID_Connect
SAML 2.0
Security Assertion Markup Language, SAML
https://en.wikipedia.org/wiki/SAML_2.0
https://docs.oasis-open.org/security/saml/Post2.0/sstc-saml-tech-overview-2.0.html
http://docs.oasis-open.org/security/saml/Post2.0/sstc-saml-tech-overview-2.0.pdf
http://docs.oasis-open.org/security/saml/Post2.0/sstc-saml-tech-overview-2.0-cd-02.pdf
Authentication & Authorization
身份驗證 & 授權
JWT
SameSite
https://support.auth0.com/notifications/5e34971b965acd000b06aff3
https://auth0.com/blog/browser-behavior-changes-what-developers-need-to-know/