Layer7 API Management

 View Only
  • 1.  Identification of Inactive OAuth Clients

    Posted Feb 21, 2024 03:00 PM

    Our security branch has identified the existence of inactive OAuth Clients as a security risk.  To mitigate this risk, I would like to be able to retrieve a list of OAuth Clients who have not consumed an API for a period of time (I believe the proposal is 90 days), so that I can take steps to contact them or disable them.  I understand from Broadcom this functionality is not currently available.



  • 2.  RE: Identification of Inactive OAuth Clients

    Broadcom Employee
    Posted Mar 14, 2024 10:25 AM

    Correct. This is not something that is currently not supported but is on our backlog for future consideration.



    ------------------------------
    Greg Thompson
    Layer7 Product Management
    ------------------------------