Static Credentials Must Not Be Used In The Browser
Authentication is described in this post. Modern business web applications tend to be a collage of service calls to numerous[…]
Read moreThe Intersection of Identity, Integration, API Management, and Application Security.
Authentication is described in this post. Modern business web applications tend to be a collage of service calls to numerous[…]
Read morebackwater / Adedotun Ajibade This blog post continues our discussion of Authorization in the API space. It will explore common[…]
Read moreGrain / Kamil Porembiński The use of HTTP POST vs HTTP GET for read-only (or query) operations in REST APIs[…]
Read more
This post was originally published as “How to Submit Tokens to an API Provider, Pt 2” on the Apigee Blog.[…]
Read more
This post was originally published as “How to Submit Tokens to an API Provider, Pt 1” on the Apigee Blog.[…]
Read more
The power of end-to-end user security context with APIs This post was originally published as “Identity Propagation in an API[…]
Read moreThis post was originally published as “Design Principles for Seamless User Authentication” on the Apigee Blog. In a previous post,[…]
Read moreThis post was originally published as “Keeping Your APIs Secure for Multiple User Types” on the Apigee Blog. In an[…]
Read moreThis post was originally published as “API Management and Perimeter Security for COTS Applications” on the Levvel Blog. Kronos provides[…]
Read moreThis post was originally published as “API Security vs. Web Application Security Part 1: A Brief History of Web Application[…]
Read more