Blog Posts Process Management Service Oriented Architecture (SOA)

How to Remove External Access to Process and System API Layers

Blog: BPM Blog Avio Consulting

By default all MuleSoft APIs deployed to CloudHub are exposed to external traffic. It is standard practice to protect them using SSL/TLS combined with an authentication policy such as client ID and secret, as well as any other required policies such as IP blocking. This level of security still exposes process and system layer APIs to external traffic, which could have adverse effects if invoked directly. Assuming an API-led connectivity approach, the process and system APIs should not be invoked directly from external clients.

Leave a Comment

Get the BPI Web Feed

Using the HTML code below, you can display this Business Process Incubator page content with the current filter and sorting inside your web site for FREE.

Copy/Paste this code in your website html code:

<iframe src="https://www.businessprocessincubator.com/content/how-to-remove-external-access-to-process-and-system-api-layers/?feed=html" frameborder="0" scrolling="auto" width="100%" height="700">

Customizing your BPI Web Feed

You can click on the Get the BPI Web Feed link on any of our page to create the best possible feed for your site. Here are a few tips to customize your BPI Web Feed.

Customizing the Content Filter
On any page, you can add filter criteria using the MORE FILTERS interface:

Customizing the Content Filter

Customizing the Content Sorting
Clicking on the sorting options will also change the way your BPI Web Feed will be ordered on your site:

Get the BPI Web Feed

Some integration examples

BPMN.org

XPDL.org

×