Summary

This chapter explored the various in-built security policies available with API-CS and how these can be used to mitigate against threats that can be exploited on exposed APIs. It is the job of the API gateway to implement these policies. Gateways can be installed either at the external perimeter of an organization or to provide protection from internal attacks, depending on how the logical gateways are configured. Further information on how to define and configure gateways can be found in Chapter 5, Platform Setup and Gateway Configuration.

The chapter also looked at how policies can be tested using tools such as Postman. However, this was for illustrative purposes only and Chapter 7, Testing APIs with API Fortress shows how to configure ...

Get Implementing Oracle API Platform Cloud Service now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.