<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.8" -->
<?xml-stylesheet href="https://wiki.quizz.vn/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="https://wiki.quizz.vn/feed.php">
        <title>Wiki.Quizz.vn - security</title>
        <description></description>
        <link>https://wiki.quizz.vn/</link>
        <image rdf:resource="https://wiki.quizz.vn/lib/exe/fetch.php?media=wiki:dokuwiki.svg" />
       <dc:date>2026-06-26T13:59:14+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=security:authentication-and-authorization&amp;rev=1781321048&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=security:cryptography-fundamentals&amp;rev=1781320946&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=security:jwt&amp;rev=1781260184&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=security:oauth2&amp;rev=1781329114&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=security:sso-mobile&amp;rev=1781593708&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=security:sso-spa&amp;rev=1781590057&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=security:sso-web&amp;rev=1781591934&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="https://wiki.quizz.vn/lib/exe/fetch.php?media=wiki:dokuwiki.svg">
        <title>Wiki.Quizz.vn</title>
        <link>https://wiki.quizz.vn/</link>
        <url>https://wiki.quizz.vn/lib/exe/fetch.php?media=wiki:dokuwiki.svg</url>
    </image>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=security:authentication-and-authorization&amp;rev=1781321048&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-06-13T03:24:08+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>authentication-and-authorization</title>
        <link>https://wiki.quizz.vn/doku.php?id=security:authentication-and-authorization&amp;rev=1781321048&amp;do=diff</link>
        <description>&lt;https://drive.google.com/file/d/1TIeK1rpQMfTS7lH_6Rf-Vjq5VeziDcQB/view?usp=sharing&gt;

Authentication &amp; Authorization Technologies

This document explains common authentication and authorization technologies from beginner to advanced.

----------

Overview

Authentication answers:


Who are you?


Authorization answers:


What are you allowed to do?</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=security:cryptography-fundamentals&amp;rev=1781320946&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-06-13T03:22:26+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>cryptography-fundamentals</title>
        <link>https://wiki.quizz.vn/doku.php?id=security:cryptography-fundamentals&amp;rev=1781320946&amp;do=diff</link>
        <description>&lt;https://drive.google.com/file/d/1TIeK1rpQMfTS7lH_6Rf-Vjq5VeziDcQB/view?usp=sharing&gt;

Cryptography Full Concepts (Best Practice + System Design View)

This document summarizes cryptography in a practical, backend-engineer-oriented way:
- NOT by algorithm only
- BUT by security design + system usage

----------

1. Core Security Goals</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=security:jwt&amp;rev=1781260184&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-06-12T10:29:44+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>jwt</title>
        <link>https://wiki.quizz.vn/doku.php?id=security:jwt&amp;rev=1781260184&amp;do=diff</link>
        <description>JWT

JWT is primarily used for:

	*  Authentication
	*  Authorization

JWT normally uses:


Digital Signatures


NOT encryption.

----------

What Is JWT?

JWT stands for:


JSON Web Token


Structure:


Header.Payload.Signature


Example:


xxxxx.yyyyy.zzzzz</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=security:oauth2&amp;rev=1781329114&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-06-13T05:38:34+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>oauth2</title>
        <link>https://wiki.quizz.vn/doku.php?id=security:oauth2&amp;rev=1781329114&amp;do=diff</link>
        <description>&lt;https://drive.google.com/file/d/1TIeK1rpQMfTS7lH_6Rf-Vjq5VeziDcQB/view?usp=sharing&gt;

oauth2</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=security:sso-mobile&amp;rev=1781593708&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-06-16T07:08:28+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>sso-mobile</title>
        <link>https://wiki.quizz.vn/doku.php?id=security:sso-mobile&amp;rev=1781593708&amp;do=diff</link>
        <description>OIDC SSO System: Mobile App + PKCE + JWT + JWKS

Version: 1.0 

Date: 2026-06-16 

Audience: Backend Engineers, Mobile Developers, Security Architects

----------

Table of Contents

	*  
	*  
	*  
	*  
	*  
	*  
	*  
	*  
	*  

----------

===== Overview =====</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=security:sso-spa&amp;rev=1781590057&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-06-16T06:07:37+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>sso-spa</title>
        <link>https://wiki.quizz.vn/doku.php?id=security:sso-spa&amp;rev=1781590057&amp;do=diff</link>
        <description>OIDC SSO System — SPA + PKCE + JWT + JWKS

Document Version: 1.0
Last Updated: 2026-06-16
Scope: Single Sign-On architecture with SPA (PKCE), two resource servers, one SSO/IdP server, JWT token validation via JWKS

----------

Table of Contents

	*</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=security:sso-web&amp;rev=1781591934&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-06-16T06:38:54+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>sso-web</title>
        <link>https://wiki.quizz.vn/doku.php?id=security:sso-web&amp;rev=1781591934&amp;do=diff</link>
        <description>OIDC SSO System — Multi-Application (Browser + WebA + WebB + ServerSSO + JWT + JWKS)

Document Version: 2.0
Last Updated: 2026-06-16
Changes in v2.0: Added full RSA Key Usage section; annotated every step in both scenarios
                  with which key (private / public) is used and by which component.</description>
    </item>
</rdf:RDF>
