API security in Apigee

preview_player
Показать описание

Want to protect your API from unauthorized access? In this video, we show you how to do exactly that with API keys. Learn how to create a proxy that requires an API key, how to create an API product, how to add a developer, how to register an app, and even how to call your API with an API key. Watch this video so you can quickly protect your API from unauthorized access!

Timestamps:
0:00​ - Intro
0:30 - How API policies work
0:59 - Create your own proxy
1:47 - View policies in proxy wizard
1:57 - Policies: Verify API key and Remove Query Param API key
2:42 - Call API
3:36 - Response without an API key
3:50 - Create an API key
5:20 - Create a Developer
5:26 - Register an App
6:20 - Response with an API key
6:35 - Wrap up

#GettingStartedWithApigeeAPIManagement

product: Cloud - API Management - Apigee API Platform; fullname: Alexandrina Garcia-Verdin;
Рекомендации по теме
Комментарии
Автор

It would be great to see a technical explanation of the differences between Apigee and API Gateway.

KevinBoutin
Автор

Is there a video for Apigee OAuth security policy?

hussnainahmed
Автор

As you mentioned, this is one way to do it.
Is there a a way for the application developer generate the api keys, put in Keyvault (Azure or Aws similar) then let Apigee access the key from the keyvault?

vannwx
Автор

Ningal super.iknow?..and eni vere.but..why you standing.power want world.haaaa

AjithKumar-tfdv
Автор

But there is something that I do not understand. Anybody wanting to access the API without an API KEY will be able to access the target URL, since this url is openly accessible on internet? This is not secure at all. There might be something I do not understand properly...

pbznt