Skip to Content
Microservices Security in Action
book

Microservices Security in Action

by Prabath Siriwardena, Wajjakkara Kankanamge Anthony Nuwan Dias
August 2020
Intermediate to advanced
616 pages
18h 7m
English
Manning Publications
Content preview from Microservices Security in Action

Appendix F. Open Policy Agent

In a typical microservices deployment, we can enforce access-control policies in either of the following two locations or both:

  • The edge of the deployment--Typically, with an API gateway (which we discuss in chapter 5)

  • The edge of the service--Typically, with a service mesh or with a set of embedded libraries (which we discuss in chapter 7 and chapter 12)

Authorization at the service level enables each service to enforce access-control policies in the way it wants. Typically, you apply coarse-grained access-control policies at the API gateway (at the edge), and more fine-grained access-control policies at the service level. Also, it’s common to do data-level entitlements at the service level. For example, ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Microservices in Action

Microservices in Action

Morgan Bruce, Paulo A Pereira
Microservices: Up and Running

Microservices: Up and Running

Ronnie Mitra, Irakli Nadareishvili
Microservices Security in Action video edition

Microservices Security in Action video edition

Prabath Siriwardena, Nuwan Dias

Publisher Resources

ISBN: 9781617295959Supplemental ContentPublisher SupportPublisher WebsitePurchase Link