Logo

dev-resources.site

for different kinds of informations.

Kusk + Cloudentity - Fine-Grained Authorization for your APIs

Published at
10/18/2022
Categories
authorization
openapi
gateway
Author
aabedraba
Categories
3 categories in total
authorization
open
openapi
open
gateway
open
Author
9 person written this
aabedraba
open
Kusk + Cloudentity - Fine-Grained Authorization for your APIs

The Kusk team is glad to announce it has partnered with Cloudentity, an authorization-as-a-service platform, to enable users to leverage Cloudentity's robust centralized policy management and distributed Authorizer frameworks in combination with Kusk's OpenAPI extensions.

Security and infrastructure teams at organizations across the world rely on Cloudentity to keep their applications safe and secure. We're excited to join their team of trusted partners like Okta, Amazon Web Services (AWS), Azure, Google, and Axway.

This is part of our main effort in helping companies create better and more resilient APIs.

OpenAPI for Open Standards

Cloudentity embraces open standards and open-source in its journey to enable developers to implement scalable security from day one. Cloudentity users achieve security compliance faster and with less effort in ecosystems like Open Banking, which heavily rely on standards like OpenAPI.

Kusk allows users to extend their OpenAPI definitions to include API gateway configuration rules so developers can have less complexity in their path to production. The configuration of the API gateway by use of OpenAPI enables developers to include features like response mocking and request body validation, among many others, out-of-the-box from day one.

Control the Authorization of APIs

Kusk allows users to create their own authorization logic with Custom Auth Upstreams. But dealing with authorization rules is complicated and doesn’t easily scale.

With Cloudentity added as an authorizer to Kusk Gateway, API requests are now protected with rules that developers can create using Cloudentity’s Visual Policy Editor or REGO policies built on Open Policy Agent. These rules are then orchestrated in Cloudentity allowing developers to tailor the authorization of their APIs easily and scale it at the same time their API grows.

This is a great step for developers that use Kusk Gateway with their APIs, enabling more out-the-box working API self-service solutions, while still maintaining flexibility and control over the gateway in their Kubernetes clusters.

How does this integration work?

To use Cloudentity as the authorizer of your API requests with Kusk Gateway, you need to add the auth extension to your OpenAPI spec:

Kusk then configures the gateway to use a Cloudentity Authorizer that will filter requests using Cloudentity’s powerful and highly customizable authorization rules that API developers can create using Cloudentity’s platform.

You can see the full instructions on how to use Cloudentity with Kusk in our guides.

Kusk + Cloudentity

Try it out now!

We are very excited to add more integrations that enable our users to build great APIs. Check on how to use Cloudentity with Kusk in our guides. If you have any issues or questions about Kusk Gateway with Cloudentity, reach out to the team on the Discord channel or open an issue in the GitHub repository).

gateway Article's
30 articles in total
Favicon
Load balancer vs Gateway vs reverse proxy vs forward proxy
Favicon
Configurable Kong API Gateway with Micronaut Services in Kotlin — A very odd Yucca tribute concert
Favicon
Announcing the MagicAPI AI Gateway: The Fastest AI Proxy for Developers!
Favicon
Mastering AWS Gateway Load Balancer: A Comprehensive Guide
Favicon
Unlocking Azure: Your Gateway to the Cloud
Favicon
Microservices: Set Up a Gateway with UI (Thymeleaf)
Favicon
Instructions for Installing Interactive Brokers IB Gateway in Linux Bash
Favicon
Mastering LLM API Gateway: Your Ultimate Guide
Favicon
Kong Gateway - Validando configurações específicas para exposição de serviços
Favicon
Jasmin sms gateway
Favicon
Why Banks in India, ME and Africa Need a Future-Ready Payments Platform
Favicon
Mastering Spring Cloud Gateway Testing: Filters (part 2)
Favicon
Mastering Spring Cloud Gateway Testing: Predicates (part 1)
Favicon
Best Practices for Configuring Rate Limits to Prevent DDoS
Favicon
Optimizing Kubernetes API Gateway for High Traffic Volumes
Favicon
Enterprise Service Bus (ESB) vs. API Gateway in Modern IT Architecture
Favicon
Kubernetes Egress Gateway
Favicon
GatewayD: The Case For A Database Gateway
Favicon
GraphQL Tools Transformations
Favicon
Chaining API requests with API Gateway
Favicon
Meson Case Study: Arweave Gateway
Favicon
Ocelot & files download
Favicon
What's Carrier Gateway is AWS?
Favicon
Spring Cloud Gateway
Favicon
What is an Egress only internet gateways in AWS?
Favicon
What is an Internet Gateway in AWS?
Favicon
Kusk + Cloudentity - Fine-Grained Authorization for your APIs
Favicon
Kusk Gateway 1.2.0 Release - OAuth, Local Mocking and more!
Favicon
Deflector and shield
Favicon
5 minutes to add RESTful APIs for your gRPC services

Featured ones: