Skip to content

Restrict public access to Offering modification endpoints (CREATE, UPDATE, DELETE) #4

@juanrasantana

Description

@juanrasantana

To secure Offering data, restrict access to certain endpoints. Specifically, endpoints for modifying Offerings (CREATE, UPDATE, DELETE) should be accessible only by the data provider, while read-only endpoints (GET, Self-Listing) should remain publicly accessible. Implement access restrictions, such as through an inverse proxy (e.g., Traefik), to allow only localhost access for the sensitive ones.

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions