Systems | Development | Analytics | API | Testing

October 2022

Not All MFA is Created Equal, Especially in CIAM

Since October is cybersecurity awareness month, it’s a great time to revisit the question of what are the best ways to secure user authentication in CIAM. In many industries (finance and healthcare, to name a few), regulations require the use of multifactor authentication (MFA) to protect access to sensitive data and transactions.

The Power of Unlocking and Unifying Data

Every day, humans produce 2.5 quintillion bytes of data. Just to put that number into perspective, there are 18 zeros in a quintillion. Unifying data can allow you to take advantage of it and benefit your business. The vast majority of organizations have collected nearly endless amounts of data. Yet, these same organizations are starving for information that can be used to make more informed decisions. Information may be stored in databases that don’t talk to each other.

Preventing PII in Test environments

Data privacy and security are a top concern for most organizations. It’s easy to see why given changes over the past few years. These types of protections can be great for us as consumers. However, they also make it extremely difficult to create realistic production simulations in pre-production. It’s hard to rapidly develop new applications if you can’t iterate against realistic data.

Using Apache Solr REST API in CDP Public Cloud

The Apache Solr cluster is available in CDP Public Cloud, using the “Data exploration and analytics” data hub template. In this article we will investigate how to connect to the Solr REST API running in the Public Cloud, and highlight the performance impact of session cookie configurations when Apache Knox Gateway is used to proxy the traffic to Solr servers. Information in this blog post can be useful for engineers developing Apache Solr client applications.

Introducing Kong Gateway Operator

Kong Gateway Operator is a next-generation deployment mechanism founded on the operator pattern that allows Kong Gateways to be provisioned in a dynamic and Kubernetes-native way, enabling automation of #Kong cluster operations and management of the Gateway lifecycle. In this video @Viktor Gamov , a principal developer advocate with @Kong demonstrates how to install Kong Gateway Operator, how to enable HTTP routes and how to upgrade Kong Gateway in seconds without downtime.

Surviving the API Security Apocalypse

With more and more businesses transforming themselves digitally, it has become critical to secure your APIs. An insecure API is an easy target for attackers to gain access to an otherwise secure computer or network. We invite you to learn about API security best practices to protect against cyberattacks, API misuse, data breaches, and zombie APIs.

API Testing Checklist and Best Practices

APIs (Application Programming Interfaces) facilitate interaction between two programs. For example, an application providing weather details talks to the API created by the weather department to get all relevant information. SlashData found that more than 90% of developers use API- a feat significant to demonstrate the significance of the interface.

From Data Lake to Data Mesh: How Data Mesh Benefits Businesses

Current data architecture is going through a revolution. Enterprises are starting to shift away from the monolithic data lake towards something less centralized: data mesh. Data mesh is a relatively new concept, first coined in 2019, that addresses potential issues with data warehouses and data lakes that can cause businesses to be slow, unresponsive, or even suffer from data silos. Data mesh benefits are able to provide a wealth of advantages to your business.

Building your Cloud Nervous System: Kong CEO and Co-Founder, Augusto Marietti, Kong Summit 2022

APIs are the building blocks of modern applications. They have become the neural network of the cloud. Behind every interface, millions of APIs power the experience. Watch Kong's Chief Executive Officers and Co-Founder, August Marietti's recorded Kong Summit 2022 keynote to understand how APIs have transformed over the last 10 years, and what's on the horizon for Kong. Dive into product demos from Kong experts, and hear first hand insights on case studies from Kong Enterprise customers.

Building an API vision to transform your business: Kong CTO, Co-Founder Marco Palladino, Kong Summit

Kong began as concept in 2009. Today, Kong has nearly 10 Trillion API calls per month. APIs allow us to break down the silos, opening the doors across what every team is doing. Join Kong CTO and Co-founder Marco Palladino in his Kong Summit 2022 Keynote, as he covers the new frontier of API management technology. Hear customer stories and see a product demo to learn how an API vision can transform a business.

Can You Smell What Kong Is Cooking? Principal Developer Advocate, Viktor Gamov, Kong Summit 2022

Can You Smell What Kong Is Cooking? Kong Principal Developer Advocate review all the highlights, major announcements, and most enlightening moments from Day 1 of Kong Summit 2022, and brings on special guests to dive deep in some Kong product demos.

Leveraging SoapUI and Testkube to Test your APIs Under Kubernetes

With APIs consuming the world of software, and microservices conquering the land of monoliths, how are organizations handling their API estates at scale? Kubernetes, the container orchestration system, has been an extremely popular choice for many to deal with management, scaling, and deployment of microservices.

New Features in Choreo Digital Platform as a Service from WSO2 Significantly Expand Development and Deployment Flexibility

New features include Bring Your Own Container supporting developers' languages of choice, deployment flexibility via Choreo DevOps Portal and Private Data Planes, GraphQL, and Internal APIs for enhanced security.

Different types of APIs and protocols [2022 UPDATED]

Hello everyone, Hope you are all doing well. We are aware that API testing is getting a lot of attention nowadays and we testers are more curious to explore it. But, often we felt lost in the middle of nowhere. It’s because of the lack of the basics. Before handling the API, you should know some basic stuff about that API. What type of API is that? What protocol is used by the API? Sounds interesting? Today we will learn about the types of APIs and the types of protocols used by the APIs.

Writing an eBPF/XDP load-balancer in Rust

In today’s cloud ecosystem the demands for high functioning and high performance observability, security and networking functionality for applications and their network traffic are as high as ever. Historically a great deal of this kind of functionality has been implemented in userspace, but the ability to program these kinds of things directly into the operating system can be very beneficial to performance.

G2 Ranks Kong in Top 5 API Management Tools

Users continue to give Kong top rankings in the Fall 2022 G2 reports, landing Kong in the leader quadrant in the API Management Tools G2 Grid and the Top 5 Easiest to Use API Management Tools. There are plenty of reasons why Kong is king when it comes to API management. But don’t just take our word for it! See what some of our users have to say.

API Integration: Top 5 "Must Haves" in the Future of APIs

As time goes by, technology leaders are having a hard time improving IT architectures by using API integrations. Also, data management has become more complex because of the acceleration of digital transformation in companies that want to remain competitive in the market. Do companies know that the urgency of digitalization is here? Are companies aware of the importance of workflow automation and what is the role of APIs in connecting services, applications, and clouds?

The 2022 Guide to API Adoption

You must constantly innovate and expand your offerings to stay ahead of the curve. One way to do this is by adopting APIs. API adoption can help you improve customer experience, increase efficiency, and drive innovation. This guide will discuss APIs, including how they work, what benefits API adoption offers, and how to get started.

Using Time Series Charts to Explore API Usage

One major reason for digging into API and product analytics is to be able to easily identify trends in the data. Of course, trends can be very tough to see when looking at something like raw API call logs but can be much easier when looking at a chart aimed at easily allowing you to visualize trends. Enter the Time Series chart.

End-to-End API Monetization with Azure APIM, Stripe, and Moesif

Many API developers and companies struggle to find ways to set up systems to monetize their APIs easily. Some are simple but not customizable and some are complex and require massive engineering effort to actually get it all running. To make things easier, Moesif created the Billing Meters feature which gives massive customizability but with a minimal amount of code and engineering effort to monetize APIs.

How To Use Retention Reports in Moesif

Product retention is an extremely important metric to check the health of your business. Calculating the retention rate of your business will return the percentage of users who continue using your product or service over a given time period. Retention can really be seen as a gauge for customer loyalty and a good reflection of the quality of your customer relationship with a new or existing customer.

How To Export Postman Collections | Moesif in 100 Seconds

Moesif supports selecting and exporting API Calls as a Postman Collection for easy replay. This enables a few different functionalities like exporting API calls for debugging any problematic API calls or even sequences of API calls and creating robust test suites in Postman from your actual API data in Moesif. Join Matt as he shows you how to export Collections from Moesif and easily import them into Postman, in 100 seconds or less.

How To Set Up Metered Billing Using Stripe in Moesif

Once you decide to monetize your app or APIs, the journey begins to find a simple and robust solution for billing. At Moesif, we know that a billing solution is actually really tough to implement. Getting your product from “0-to-monetization” is not always a straightforward path, even if it should be. Our no-code approach to billing is a simple and elegant way to very rapidly gain the capability to bill customers for usage. Easy monetization is the premise for our latest feature for generating revenue from your apps and APIs.

Introducing Kong Gateway 3.0 [User Call]

Kong Gateway 3.0 is now out and it's bringing a ton of useful functionality for you all to use. It's adding OpenTelemetry tracing, advanced secrets management and a brand new router in addition to the usual performance increases. Michael Heap (Director of Developer Experience at Kong) takes you through the deprecations, breaking changes and brand new features that you need to be aware of in Kong Gateway 3.0.

Data Mesh Architecture: Understanding the Four Key Components

Organizations worldwide put their best foot forward to create a centralized database where information is gathered, stored, and managed. Their data engineers transform difficult-to-decipher datasets into data pipelines that can be used by data scientists, analysts, and consumers. However, the new data mesh concept championed by Zhamak Dehghani, the director of technology for IT consultancy firm ThoughtWorks, allows domain teams to conduct cross-domain data analysis independently.

CIAM: Codifying the ever-changing keys to B2B commerce

WSO2 recently announced the release of their Private CIAM Cloud service, and it made me think about the changing role of personal identity versus business entity in today’s complex distributed software environments. The CIAM space has evolved far beyond the traditional end user’s need for identity and access to applications in a B2C (business to customer) scenario.

Sponsored Post

Load Testing: How Fast Can We Go?

Speedscale creates load tests from recorded traffic so generating load is pretty core to what we do. As a brief overview, we record traffic from your service in one environment and replay it in another, optionally increasing load several fold. During a replay the Speedscale load generator makes requests against the system under test (SUT), with the responses from external dependencies like APIs or a payment processor optionally mocked out for consistency. Your service is the SUT here. Currently the load generator runs as a single process, usually inside a pod in Kubernetes. So how fast is this thing, and how did we get to where we are today?

API Performance Testing for Success

As the rate of delivery for applications and services continues to rise, performance testing often takes a backseat in the race to delivering apps on-time. This 2022 holiday season is expected to be bigger than ever, with holiday shopping growing 15.5% to $236 billion. During this make-or-break time of year, companies can’t afford for their apps to become unreliable under heavy load.

Step-by-step Guide: Build and host an API

This guide will take you through the steps to build and host an API using Linx. It will cover building a straightforward API to retrieve product data. You will be provided with the data, instructions for what tools to use, relevant scripts and all steps to get the API live. It will take about 20 to 30 minutes to complete all steps.

Why Your Company Needs Data Integration

So much relies on data these days that it might be safe to say that most companies can’t thrive without it. Yet, gathering data is just the start — using it to make better company decisions or improve business processes is the end goal. Unfortunately, collecting large quantities of data for your business might seem futile if that data remains cut off from other systems. As such, it has become vital for developers and decision-makers to unify data for practical use.

Tech Talk - Service Mesh and GitOps Beyond Kubernetes

The #container adoption journey may be simple for experienced practitioners in greenfield development -but many established enterprises still face the daunting beginning of this journey, carrying the weight of complex monolithic applications on traditional compute. Join Kat and Christian as they extend #servicemesh and #GitOps beyond the boundaries of #Kubernetes. In this talk, you’ll learn.

How Can Moesif Help You Understand API Usage?

Are you looking to grow your business? Deliver more value to your customers? Well, understanding API usage should be at the top of your priority list, right after the ability to track API usage and API monitoring. By using Moesif for understanding your customer’s API usage, you can unlock many different insights, such as Understanding these key insights can help make informed business and engineering decisions.

5 Trends to Look Out for in API-Led Connectivity

The pandemic saw the world rapidly pivot to mass remote working, forcing many companies to accelerate their digital transformation efforts. The result has been businesses facing an increasingly prevalent pain point in their operations — integrating and automating workflows, which calls for API led connectivity. The 2010s saw the rise of an API-led approach as a central pillar of digital infrastructure, along with the industry’s embrace of SaaS.

Enabling Multi-Region for Kong Konnect Cloud

Since the initial launch of Kong Konnect Cloud, one common feature request has (unsurprisingly) been Multi-Region support. Many customers look for SaaS solutions that support a distributed service architecture. Even at its inception, our goal was to support more than a single region. Today, we’re happy to announce Multi-Region Support for Kong Konnect Cloud.

End-to-End API Monetization with Java Spring, Stripe, and Moesif

Many API developers and companies struggle to find ways to easily set up systems to monetize their APIs. Some are simple but not customizable, some are complex and require massive engineering effort to actually get it all running. To make things easier, Moesif created a feature a few months ago called Billing Meters which gives massive customizability but with a minimal amount of code and engineering effort.

API Load Testing Tutorial

API load testing, which identifies how stable your APIs are under different workloads, is a crucial part of performance testing. In this guide you will learn what is API load testing, when to perform load testing, and more. One growing pain of increasing iterative development and shortening release cycles is a growing inability to detect and fix inefficient code – whether in the CI/CD pipeline or in production.

Integration testing made easy with Oleg Šelajev | Kongcast Episode 21

In this episode of Kongcast, @Viktor Gamov , a principal developer advocate at @Kong joined by @Oleg Šelajev , Head of DevRel at @AtomicJar to talk about testing complex infrastructures (data systems, microservices, messaging systems) using containers, and specifically open source library called Testcontainers.

Securing Your APIs With the Right API Management Solution

In today’s digital business landscape, APIs have become the most important digital asset. One study found that 83% of all internet traffic belongs to API-based services. APIs act as the reusable building block that employees, partners, and customers can easily access from anywhere. Figure 1: API security overview This has also made APIs the top security challenge for most companies. In a recent survey, about 94% of respondents noted that they had faced an API security issue over the past year.

Using Moesif's Live Event Log to Filter and Inspect API Calls and Events

As you may know, event logs are a common feature in operating systems and other software that keep track of system and application errors. When you have API traffic to follow or front-end actions you want to watch, using Moesif’s Live Event Log is a simple way to filter and find the data you need.