This talk has been presented at GraphQL Galaxy 2020, check out the latest edition of this Tech Conference.

This talk has been presented at GraphQL Galaxy 2020, check out the latest edition of this Tech Conference.
The purpose of the lightning talk is to demonstrate how to secure GraphQL endpoints using Tyke in five minutes.
The presenter of the talk is Matt Tanner, a product evangelist at Tyke.
The talk addresses adding authorization and authentication mechanisms, securing the schema to restrict field access to specific users, and protecting against denial of service attacks.
Query depth limiting in Tyke is used to protect against denial of service attacks by restricting the depth of nested queries.
Rate limiting and throttling can be enforced in Tyke by setting per-API limits and usage quotas within policies.
If a query violates the set field-based permissions in Tyke, the system will restrict access to the specified fields and return an error message.
Tyke supports various authentication modes including authentication tokens, mutual TLS, OAuth 2.0, and JWTs.
Tyke secures a GraphQL schema by adding field-based permissions and query depth limiting to prevent unauthorized access and denial of service attacks.
'Batteries included security' means that Tyke provides all necessary security features within its gateway without the need for additional plugins.
Tyke handles unauthorized access attempts by requiring an authentication token and enforcing policies that restrict access based on predefined permissions and limits.
We constantly think of articles and videos that might spark Git people interest / skill us up or help building a stellar career
Comments