API Policy Service
This web application currently offers a REST endpoint targeted at Airlock WAF that allows to retrieve information about a technical client by resolving a given API key. Among other, the returned information contains details about the technical client and associated plans (including rate limits).
repository) sharedSecret) Shared secret to verify the JWT signature. Must be the same as on the Airlock Gateway (WAF) using this API Policy Service endpoint.
The shared secret must be encoded in base64. The minimal required unencoded length is at least 512 bits. Configuration validation fails if the secret is too short.
One can, for example, generate a random secret with 512 bits (64 bytes) as base64 encoded string using openssl as follows: openssl rand -base64 96
contextExtractor) logUserTrailToDatabase) Configures the database settings to use when persisting user trail log entries.
If this value is defined, then all user trail log messages generated by the API Policy Service App module will additionally be forwarded to the database configured within the referenced repository plugin.
All forwarded log entries are stored inside the table "USER_TRAIL_LOG". Note that setting this value does not disable writing log messages to the API Policy Service log file.
correlationIdSettings) Defines settings for correlation ID transfer and logging inside the Api Policy Service module.
If undefined, no correlation ID will be logged for this module.
type: ApiPolicyServiceApp
id: ApiPolicyServiceApp-xxxxxx
displayName:
comment:
properties:
contextExtractor:
correlationIdSettings:
logUserTrailToDatabase:
repository:
sharedSecret: