Toot

Written by Piotr Siuszko on 2024-11-05 at 16:04

I want to write my own service and I want to limit who can call post endpoints without implementing whole auth.

From security point would it be good enough to require to pass some key in post form and in server check if it is the same as the one specified in server?

The server would be put behind reverse-proxy so the request should be encrypted.

[#]programming #rustlang #webdev #selfhosted #backend #indieweb

=> More informations about this toot | View the thread | More toots from MevLyshkin@mastodon.gamedev.place

Mentions

Tags

=> View programming tag | View rustlang tag | View webdev tag | View selfhosted tag | View backend tag | View indieweb tag

Proxy Information
Original URL
gemini://mastogem.picasoft.net/toot/113431194038324215
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
283.166974 milliseconds
Gemini-to-HTML Time
1.12144 milliseconds

This content has been proxied by September (3851b).