Logo

dev-resources.site

for different kinds of informations.

Deflector and shield

Published at
11/15/2022
Categories
api
gateway
protection
security
Author
techcomm_sag
Categories
4 categories in total
api
open
gateway
open
protection
open
security
open
Author
12 person written this
techcomm_sag
open
Deflector and shield

USS_Enterprise-D_navigational_deflector

Do you know the difference between the deflector and the shield? If so, you can proudly call yourself a Star Trek® fan. Without getting into too much detail, they both serve one purpose, the integrity of the space ship and security of the crew on it. The navigational deflector makes sure the ship travels safely though space, even at warp speed, protecting it from the space debris while the shield established a multi-layer protection field in case of an attack.

Similarly, API Gateways use a threat protection layer to make sure the mediation layer doesn’t have to deal with the network debris also known as unwanted traffic. This layer protects the rest of the gateway against DoS attacks, malicious content, viruses etc. Essentially, nothing suspicious shall pass.

When an API call successfully gets through the protection layer, it’s still subject to API access control and protection policies. The gateway’s mediation layer makes sure the client is authenticated (we know them) and authorized (we allowed them) to use the API. Many other things happen to make sure they use the API in a way it was designed for (validation policies) etc.

Just like the deflector and the shield, these two layers together constitute a holistic API Security solution in API Management. They can additionally be augmented by specialized API security solutions or application security solutions like WAFs.

Shields up! Red alert! :slight_smile:

Read full topic

gateway Article's
30 articles in total
Favicon
Load balancer vs Gateway vs reverse proxy vs forward proxy
Favicon
Configurable Kong API Gateway with Micronaut Services in Kotlin — A very odd Yucca tribute concert
Favicon
Announcing the MagicAPI AI Gateway: The Fastest AI Proxy for Developers!
Favicon
Mastering AWS Gateway Load Balancer: A Comprehensive Guide
Favicon
Unlocking Azure: Your Gateway to the Cloud
Favicon
Microservices: Set Up a Gateway with UI (Thymeleaf)
Favicon
Instructions for Installing Interactive Brokers IB Gateway in Linux Bash
Favicon
Mastering LLM API Gateway: Your Ultimate Guide
Favicon
Kong Gateway - Validando configurações específicas para exposição de serviços
Favicon
Jasmin sms gateway
Favicon
Why Banks in India, ME and Africa Need a Future-Ready Payments Platform
Favicon
Mastering Spring Cloud Gateway Testing: Filters (part 2)
Favicon
Mastering Spring Cloud Gateway Testing: Predicates (part 1)
Favicon
Best Practices for Configuring Rate Limits to Prevent DDoS
Favicon
Optimizing Kubernetes API Gateway for High Traffic Volumes
Favicon
Enterprise Service Bus (ESB) vs. API Gateway in Modern IT Architecture
Favicon
Kubernetes Egress Gateway
Favicon
GatewayD: The Case For A Database Gateway
Favicon
GraphQL Tools Transformations
Favicon
Chaining API requests with API Gateway
Favicon
Meson Case Study: Arweave Gateway
Favicon
Ocelot & files download
Favicon
What's Carrier Gateway is AWS?
Favicon
Spring Cloud Gateway
Favicon
What is an Egress only internet gateways in AWS?
Favicon
What is an Internet Gateway in AWS?
Favicon
Kusk + Cloudentity - Fine-Grained Authorization for your APIs
Favicon
Kusk Gateway 1.2.0 Release - OAuth, Local Mocking and more!
Favicon
Deflector and shield
Favicon
5 minutes to add RESTful APIs for your gRPC services

Featured ones: