dimanche 31 mars 2019

What this be considered bad security practice/violation?

  1. Service A has a key to talk to Service B
  2. Service B has an HTTPS API endpoint for starting a job and the consumer of the endpoint supplies through the API the connection string of the message queue of where to send the job metadata when it's completed.

This way A is fully decoupled from B. But is it safe?

Aucun commentaire:

Enregistrer un commentaire