Firebase API Keys: Got a Callback From A Potential Client
I originally wrote this post about six months ago. Variations of this story have been published many times this year.
Read article: Firebase API Keys: Got a Callback From A Potential Client43 articles tagged APIs.
I originally wrote this post about six months ago. Variations of this story have been published many times this year.
Read article: Firebase API Keys: Got a Callback From A Potential ClientThere are few phrases in enterprise IT capable of making a room become noticeably quieter than, “We need to talk about data governance.”
Read article: Enterprise Data Governance: You Can’t Govern What You Don’t Know You HaveWhen the metrics you hold so dear no longer measure anything meaningful.
Read article: 2 + Fish = Moon Rock: When Your Key Performance Indicator Dashboard Has More Charts Than PurposeFor most of human history, keeping track of dates was relatively straightforward. The sun came up; the sun went down.
Read article: The Year 2038 Problem: When Computers Discover Time Is HardAuthentication is one of the most fundamental concepts in application security. Most developers spend considerable time designing how authenticated users are represented, authorized, and managed. Surprisingly, much less attention is given to the opposite state of users who have not authenticated at…
Read article: Understanding Unauthenticated Traffic: How Applications and APIs Represent The Unauthenticated UserSometime around 2012, I published a similar list (up to the point of APIs). I recently put the same list in another post. I thought having this as its own post would be useful, or, at least, amusing.
Read article: Begotten & Forgotten Distributed Service TechnologiesI’ve discussed APIs and API Management in previous blog posts. These are among my older blog posts, but the points being made are, generally, still relevant. I’ve never published a blog post exclusively about API design. I have a blog post about “API Gateways and Multiple Consumer Types” where I…
Read article: API Design: Planned, Unplanned, Security and Utter ChaosSometimes at client sites, I see a separation of APIs advertised on an API Gateway based upon consumer type. Sometimes, this is unavoidable, but there should be a core set of APIs and a general push to create APIs that are reusable. Reusability of APIs is a foundational building block of API…
Read article: API Gateways and Multiple Consumer TypesThis blog post continues our discussion of Authorization in the API space. It will explore common authorization patterns with API Gateways and the backend API Providers. Generally, the API Gateway will apply a Coarse Grained Authorization (CGA) decision and the API Provider will implement Fine…
Read article: Making Authorization Decisions