Summary

In this chapter, we briefly discussed RESTful services and how to secure them. Specifically we covered

  • Restricting access to resources and formats
  • Authenticating/authorizing RESTful requests
  • Enforcing quotas and rate limits

We also created a very basic REST server that you can use to respond to RESTful API requests.

Get Pro PHP Security: From Application Security Principles to the Implementation of XSS Defenses, Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.