Advanced API Security: Securing APIs with OAuth 2.0, OpenID Connect, JWS, and JWE
暫譯: 進階 API 安全性:使用 OAuth 2.0、OpenID Connect、JWS 和 JWE 保護 API
Prabath Siriwardena
買這商品的人也買了...
商品描述
Advanced API Security is a complete reference to the next wave of challenges in enterprise security--securing public and private APIs.
API adoption in both consumer and enterprises has gone beyond predictions. It has become the ‘coolest’ way of exposing business functionalities to the outside world. Both your public and private APIs, need to be protected, monitored and managed. Security is not an afterthought, but API security has evolved a lot in last five years. The growth of standards, out there, has been exponential.
That's where AdvancedAPI Security comes in--to wade through the weeds and help you keep the bad guys away while realizing the internal and external benefits of developing APIs for your services. Our expert author guides you through the maze of options and shares industry leading best practices in designing APIs for rock-solid security. The book will explain, in depth, securing APIs from quite traditional HTTP Basic Authentication to OAuth 2.0 and the standards built around it.
Build APIs with rock-solid security today with Advanced API Security.
- Takes you through the best practices in designing APIs for rock-solid security.
- Provides an in depth tutorial of most widely adopted security standards for API security.
- Teaches you how to compare and contrast different security standards/protocols to find out what suits your business needs the best.
商品描述(中文翻譯)
《進階 API 安全性》是針對企業安全中下一波挑戰的完整參考資料——保護公共和私有 API。
無論是在消費者還是企業中,API 的採用已超出預期。它已成為向外界展示業務功能的「最酷」方式。您的公共和私有 API 都需要受到保護、監控和管理。安全性不是事後考慮的問題,而是 API 安全性在過去五年中已經有了很大的演變。現有標準的增長是指數級的。
這就是《進階 API 安全性》的用武之地——幫助您穿越複雜的選擇,並在實現開發 API 服務的內部和外部好處的同時,防止壞人入侵。我們的專家作者將引導您穿越這個迷宮,並分享行業領先的最佳實踐,以設計出堅如磐石的安全 API。本書將深入解釋如何從相當傳統的 HTTP 基本身份驗證到 OAuth 2.0 及其周圍的標準來保護 API。
今天就用《進階 API 安全性》來構建堅如磐石的安全 API。
- 帶您了解設計堅如磐石的安全 API 的最佳實踐。
- 提供最廣泛採用的 API 安全標準的深入教程。
- 教您如何比較和對比不同的安全標準/協議,以找出最適合您業務需求的方案。