Red Hat 3scale API Management Platform simplifies the integration between the APIcast gateway and Red Hat Single Sign-On through OpenID Connect (OIDC) for API authentication. Consequently, the new version enables API provider users to select and configure their API authentication process from the admin portal UI.
OpenID Connect (OIDC)
OpenID Connect 1.0 is a simple identity layer on top of the OAuth 2.0 protocol. It allows clients to verify the identity of the end user based on the authentication performed by an authorization server. Clients can also get basic profile information about the end user in an interoperable and REST-like way.
OpenID Connect allows clients of all types, including Web-based, mobile, and JavaScript clients, to request and receive information about authenticated sessions and end users. The specification suite is extensible, allowing participants to use optional features such as encryption of identity data, discovery of OpenID providers, and session management.
See http://openid.net/connect/faq/ for the Frequently Asked Questions about OpenID Connect.
Red Hat Single Sign-On
Red Hat Single Sign-On (RH-SSO) provides Web single sign-on and identity federation based on SAML 2.0, OpenID Connect, and OAuth 2.0 specifications.
In addition, RH-SSO supports the four basic OAuth 2.0 flows:
- Client credentials
- Authorization code
- Implicit grant
- Resource password owner
More information about RH-SSO can be found on the Red Hat product page.
What’s New in 3scale API Management 2.1
From this version on, API providers will be able to select OpenID Connect (OIDC) as the mechanism of authentication for APIs. They will be able to configure the OIDC integration from the admin portal UI service definition. API providers will also be able to add the OIDC issuer location from the authentication settings. Users can configure this setting per service, so they can set up different providers for each one of their APIs. As a result, API providers can use different security realms from the Identity Provider (IdP) per API provider account.
The new version of 3scale API Management adds Zync, a new part that takes care of synchronization between applications and the IdP, simplifying the communication of the different components of your architecture. Also, Zync will dynamically register the client in both systems.
In addition, users can secure the admin portal with RH-SSO. Previously, only the developer portal was able to connect with Red Hat Single Sign-On. Now, users can configure the same IdP for both portals.
Most noteworthy, makes it easier to integrate with other IdPs as long as they’re compliant with OIDC specification. Now adding other IdPs need more custom code for the integration. In future releases, the admin portal UI will offer support to configure them seamlessly.
Finally, Red Hat 3scale API Management 2.1 requires Red Hat Single Sign-On (RH-SSO) 7.1.2 or newer to add the new OpenID Connect integration. As these are the supported solution versions to carry out OAuth 2.0 from end to end.
Red Hat 3scale API Management Platform 2.1 is now available to try on-premise.
Resource Links
- Red Hat 3scale API Management Platform
- 3scale integration with RH-SSO using OIDC, product documentation
- Single Sign-on for the admin portal, product documentation
Sobre el autor
Más similar
Navegar por canal
Automatización
Las últimas novedades en la automatización de la TI para los equipos, la tecnología y los entornos
Inteligencia artificial
Descubra las actualizaciones en las plataformas que permiten a los clientes ejecutar cargas de trabajo de inteligecia artificial en cualquier lugar
Nube híbrida abierta
Vea como construimos un futuro flexible con la nube híbrida
Seguridad
Vea las últimas novedades sobre cómo reducimos los riesgos en entornos y tecnologías
Edge computing
Conozca las actualizaciones en las plataformas que simplifican las operaciones en el edge
Infraestructura
Vea las últimas novedades sobre la plataforma Linux empresarial líder en el mundo
Aplicaciones
Conozca nuestras soluciones para abordar los desafíos más complejos de las aplicaciones
Programas originales
Vea historias divertidas de creadores y líderes en tecnología empresarial
Productos
- Red Hat Enterprise Linux
- Red Hat OpenShift
- Red Hat Ansible Automation Platform
- Servicios de nube
- Ver todos los productos
Herramientas
- Training y Certificación
- Mi cuenta
- Soporte al cliente
- Recursos para desarrolladores
- Busque un partner
- Red Hat Ecosystem Catalog
- Calculador de valor Red Hat
- Documentación
Realice pruebas, compras y ventas
Comunicarse
- Comuníquese con la oficina de ventas
- Comuníquese con el servicio al cliente
- Comuníquese con Red Hat Training
- Redes sociales
Acerca de Red Hat
Somos el proveedor líder a nivel mundial de soluciones empresariales de código abierto, incluyendo Linux, cloud, contenedores y Kubernetes. Ofrecemos soluciones reforzadas, las cuales permiten que las empresas trabajen en distintas plataformas y entornos con facilidad, desde el centro de datos principal hasta el extremo de la red.
Seleccionar idioma
Red Hat legal and privacy links
- Acerca de Red Hat
- Oportunidades de empleo
- Eventos
- Sedes
- Póngase en contacto con Red Hat
- Blog de Red Hat
- Diversidad, igualdad e inclusión
- Cool Stuff Store
- Red Hat Summit