Zato Blog

Open Source ESB, SOA, REST, APIs and Cloud Integrations in Python

Topic: ssl-tls

post 0 image
This Zato how-to is about ensuring that only API clients with valid SSL/TLS certificates, including expected certificate fingerprints or other metadata, can invoke selected REST endpoints. In this way, we are making access to the endpoints secure and, at the same time, we can guard against a class of faults related to the Certificate Authority infrastructure.

Topics:REST, Security, SSL-TLS