Layer7 API Management

  • 1.  API Portal and OTK integration

    Posted Nov 09, 2016 09:32 PM

    Can Someone please help me if my understanding is correct with API Portal and OTK integration.

    1. OAuth Client id and Client secret are no longer be able to managed by OAuth manager after API Portal and OTK integration.
    2. OAuth Client id and client secret will be referred as API Key and API Secret after API Portal and OTK Integration.
    3. OAuth Tokens are still managed through OAuth Manager.
    4. (After API portal and OTK integration) API Portal will store the API Key and Secret in its DB and pushes that to API Gateway periodically. If there is any external DB for OAuth then Gateway will push the API key and secret to the off-box database? (API Portal --> API Gateway --> OTK_DB)?


  • 2.  Re: API Portal and OTK integration
    Best Answer

    Broadcom Employee
    Posted Nov 10, 2016 08:55 AM

    Hello Sravankanumuri

     

    It sounds like you have a good grasp on this. For questions 1-3, your statements are all correct.

    Once the integration takes place the OAuth manager is only used for token management. You will still see the clients tab but it will be inaccessible and no client list will be returned.

     

    As for item 4, nothing additional is done with respect to pushing the API Key and Secret to the OTK  DB.

     

    Regards,

    Joe