𝔖 Scriptorium
✦   LIBER   ✦

πŸ“

Advanced API Security: Securing APIs with OAuth 2.0, OpenID Connect, JWS, and JWE

✍ Scribed by Prabath Siriwardena (auth.)


Publisher
Apress
Year
2014
Tongue
English
Leaves
248
Edition
1
Category
Library

⬇  Acquire This Volume

No coin nor oath required. For personal study only.

✦ Synopsis


Advanced API Security is a complete reference to the next wave of challenges in enterprise security--securing public and private APIs.

API adoption in both consumer and enterprises has gone beyond predictions. It has become the ‘coolest’ way of exposing business functionalities to the outside world. Both your public and private APIs, need to be protected, monitored and managed. Security is not an afterthought, but API security has evolved a lot in last five years. The growth of standards, out there, has been exponential.

That's where AdvancedAPI Security comes in--to wade through the weeds and help you keep the bad guys away while realizing the internal and external benefits of developing APIs for your services. Our expert author guides you through the maze of options and shares industry leading best practices in designing APIs for rock-solid security. The book will explain, in depth, securing APIs from quite traditional HTTP Basic Authentication to OAuth 2.0 and the standards built around it.

Build APIs with rock-solid security today with Advanced API Security.

  • Takes you through the best practices in designing APIs for rock-solid security.
  • Provides an in depth tutorial of most widely adopted security standards for API security.
  • Teaches you how to compare and contrast different security standards/protocols to find out what suits your business needs the best.

✦ Table of Contents


Front Matter....Pages i-xix
Managed APIs....Pages 1-10
Security by Design....Pages 11-31
HTTP Basic/Digest Authentication....Pages 33-46
Mutual Authentication with TLS....Pages 47-58
Identity Delegation....Pages 59-73
OAuth 1.0....Pages 75-90
OAuth 2.0....Pages 91-132
OAuth 2.0 MAC Token Profile....Pages 133-142
OAuth 2.0 Profiles....Pages 143-153
User Managed Access (UMA)....Pages 155-170
Federation....Pages 171-180
OpenID Connect....Pages 181-200
JWT, JWS, and JWE....Pages 201-220
Patterns and Practices....Pages 221-230
Back Matter....Pages 231-235

✦ Subjects


Computer Science, general; Special Purpose and Application-Based Systems


πŸ“œ SIMILAR VOLUMES


Advanced API Security Securing APIs wit
✍ Prabath Siriwardena πŸ“‚ Library πŸ“… 2014 πŸ› Apress 🌐 English

Advanced API Security is a complete reference to the next wave of challenges in enterprise security--securing public and private APIs.<br>API adoption in both consumer and enterprises has gone beyond predictions. It has become the β€˜coolest’ way of exposing business functionalities to the outside wor

Advanced API Security: Securing APIs wit
✍ Prabath Siriwardena πŸ“‚ Library πŸ“… 2014 πŸ› Apress 🌐 English

Advanced API Security is a complete reference to the next wave of challenges in enterprise security - securing public and private APIs. API adoption in both consumer and enterprises has gone beyond predictions. It has become the 'coolest' way of exposing business functionalities to the outside worl

Advanced API Security: OAuth 2.0 And Bey
✍ Prabath Siriwardena πŸ“‚ Library πŸ“… 2020 πŸ› Apress 🌐 English

Prepare for the next wave of challenges in enterprise security. Learn to better protect, monitor, and manage your public and private APIs. Enterprise APIs have become the common way of exposing business functions to the outside world. Exposing functionality is convenient, but of course comes with a

Getting Started with OAuth 2.0: Programm
✍ Ryan Boyd πŸ“‚ Library πŸ“… 2012 πŸ› O'Reilly Media 🌐 English

Whether you develop web applications or mobile apps, the OAuth 2.0 protocol will save a lot of headaches. This concise introduction shows you how OAuth provides a single authorization technology across numerous APIs on the Web, so you can securely access users data - such as user profiles, photos, v