IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  API Protection Cookbook

    Posted Thu January 23, 2020 02:55 PM
    Hi, I am trying to execute a simple API Protection poc using postman as the utility and would appreciate some guidance with configuration. I successfully installed the Docker trial following the  "ISAM on Docker Quickstart" video using  ISAM image v. 9.0.7.1. Some of my test / flow id like to do is "authorization_code", "Implicit" and Hybrid (oIDC). Also test Claims and other stuff..

    Is there a cookbook or instructions for configuring this type of "simple" pattern? I know there is a full blown Cookbook out there though I am hoping for an abbreviated version :)

    Thanks

    ------------------------------
    martin cardenas
    ------------------------------


  • 2.  RE: API Protection Cookbook

    Posted Fri January 24, 2020 03:54 AM
    Edited by Jon Harry Fri January 24, 2020 03:54 AM
    Hello Martin,

    There is a lab on the Security Learning Academy here: https://www.securitylearningacademy.com/course/view.php?id=2672

    I also have a cookbook.  It might be more than you need/want - it covers the OAuth flows and also integration with in-line authorization and calling REST authentication APIs for 2FA.  I don't think it's been published on the Security Learning Academy at this point but here is a direct link:  https://ibm.box.com/s/wtzgmi2gyaqqxivbgzhuyipydm5438uh

    Cheers... Jon.

    ------------------------------
    Jon Harry
    Consulting IT Security Specialist
    IBM
    ------------------------------



  • 3.  RE: API Protection Cookbook

    Posted Fri January 24, 2020 11:20 AM
    Thanks Jon! I will give this a go and circle back :)

    ------------------------------
    martin cardenas
    ------------------------------



  • 4.  RE: API Protection Cookbook

    Posted Sat January 25, 2020 01:22 AM
    The cookbook worked great! Used the docker-compose version and got it working nicely and now am able to run my tests. Thanks Jon!

    ------------------------------
    martin cardenas
    ------------------------------