home.social

#apim — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #apim, aggregated by home.social.

  1. Implementing AI Gateway capabilities in API Management

    Today, let's explore the Generative AI Gateway capabilities in API Management, crucial for securing and monitoring OpenAI endpoints in applications heading toward production.

    #AI #APIManagement #OpenAI #AIcapabilities #mvpbuzz #apim #azureopenai #Technology #Innovation

    luke.geek.nz/azure/implementin

  2. Implementing AI Gateway capabilities in API Management

    Today, let's explore the Generative AI Gateway capabilities in API Management, crucial for securing and monitoring OpenAI endpoints in applications heading toward production.

    #AI #APIManagement #OpenAI #AIcapabilities #mvpbuzz #apim #azureopenai #Technology #Innovation

    luke.geek.nz/azure/implementin

  3. Implementing AI Gateway capabilities in API Management

    Today, let's explore the Generative AI Gateway capabilities in API Management, crucial for securing and monitoring OpenAI endpoints in applications heading toward production.

    #AI #APIManagement #OpenAI #AIcapabilities #mvpbuzz #apim #azureopenai #Technology #Innovation

    luke.geek.nz/azure/implementin

  4. Implementing AI Gateway capabilities in API Management

    Today, let's explore the Generative AI Gateway capabilities in API Management, crucial for securing and monitoring OpenAI endpoints in applications heading toward production.

    #AI #APIManagement #OpenAI #AIcapabilities #mvpbuzz #apim #azureopenai #Technology #Innovation

    luke.geek.nz/azure/implementin

  5. Implementing AI Gateway capabilities in API Management

    Today, let's explore the Generative AI Gateway capabilities in API Management, crucial for securing and monitoring OpenAI endpoints in applications heading toward production.

    #AI #APIManagement #OpenAI #AIcapabilities #mvpbuzz #apim #azureopenai #Technology #Innovation

    luke.geek.nz/azure/implementin

  6. Has anyone had problems since this week with New-AzApiManagementApiRevision?

    Something like this?
    github.com/Azure/azure-powersh

  7. 𝐃𝐞𝐟𝐞𝐧𝐝𝐞𝐫 𝐟𝐨𝐫 𝐀𝐏𝐈𝐬 𝐁𝐞𝐭𝐭𝐞𝐫 𝐓𝐨𝐠𝐞𝐭𝐡𝐞𝐫 𝐰𝐢𝐭𝐡 𝐀𝐳𝐮𝐫𝐞 𝐖𝐞𝐛 𝐀𝐩𝐩𝐥𝐢𝐜𝐚𝐭𝐢𝐨𝐧 𝐅𝐢𝐫𝐞𝐰𝐚𝐥𝐥 𝐚𝐧𝐝 𝐀𝐳𝐮𝐫𝐞 𝐀𝐏𝐈 𝐌𝐚𝐧𝐚𝐠𝐞𝐦𝐞𝐧𝐭

    The synergy of Microsoft Defender for APIs, Azure WAF, and Azure API Management forms a strong defense against API threats.

    techcommunity.microsoft.com/t5

    ✔️The WAF on Application Gateway checks the request against WAF rules. If the request is valid, then it will proceed.

    ✔️Application Gateway directs the request to APIM.

    ✔️APIM accepts and properly maps the requests.

    ✔️Defender for APIs inspects API endpoints and gives insight on whether the API is properly authenticated, inactive, and externally facing.

    ✔️Defender for APIs monitors the traffic going to and from APIM to classify sensitive data and alert on exploits and anomalies.

    𝐃𝐞𝐟𝐞𝐧𝐝𝐞𝐫 𝐟𝐨𝐫 𝐀𝐏𝐈𝐬

    Defender for APIs provides visibility into crucial APIs. It facilitates a deep dive into your API security, allowing prioritization of vulnerabilities and quick detection of active threats. Key features include a consolidated view of managed APIs with security insights on external, inactive, or unauthenticated APIs, data classifications of sensitive data in API interactions, and machine learning-driven detection of API threats in alignment with the OWASP API Top 10.

    𝐀𝐳𝐮𝐫𝐞 𝐀𝐏𝐈 𝐌𝐚𝐧𝐚𝐠𝐞𝐦𝐞𝐧𝐭

    Azure API Management caters to the entire API lifecycle. APIM includes an API gateway, management platform, and developer portal. The gateway manages requests, ensures authentication, transforms requests and responses, caches responses, enforces usage caps, emits logs, and more.

    𝐀𝐳𝐮𝐫𝐞 𝐖𝐞𝐛 𝐀𝐩𝐩𝐥𝐢𝐜𝐚𝐭𝐢𝐨𝐧 𝐅𝐢𝐫𝐞𝐰𝐚𝐥𝐥

    Azure WAF provides a centralized defense against web and API vulnerabilities like SQL injections and cross-site scripting attacks. With its rapid virtual patching, Azure WAF offers quick threat mitigation without needing to individually secure every web application.

    #microsoft #azure #azurewaf #waf #api #defenderapi #sqlinjection #apim #apimanagement #defenderforapi #defenderforcloud #defender #cloud #cloudsecurity #cloudnative #soc #owasp #apithreats #cybersecurity

  8. 𝗛𝗼𝘄 𝘁𝗼 𝘀𝗲𝗰𝘂𝗿𝗲 𝗮 𝗙𝘂𝗻𝗰𝘁𝗶𝗼𝗻 𝗔𝗽𝗽?

    𝚂̲𝚎̲𝚌̲𝚞̲𝚛̲𝚎̲ ̲𝚘̲𝚙̲𝚎̲𝚛̲𝚊̲𝚝̲𝚒̲𝚘̲𝚗̲

    ➡️Defender for Cloud for assessment of potential configuration-related security vulnerabilities

    ➡️Log and monitor: diagnostic settings to configure streaming export of platform logs and metrics

    ➡️Require HTTPS

    ➡️Securing keys with Azure key Vault

    ➡️Enable App Service Authentication/Authorization

    ➡️Use Azure API Management (APIM) to authenticate requests

    ➡️Run your function app with the lowest possible permissions

    ➡️Store data encrypted

    𝚂̲𝚎̲𝚌̲𝚞̲𝚛̲𝚎̲ ̲𝚍̲𝚎̲𝚙̲𝚕̲𝚘̲𝚢̲𝚖̲𝚎̲𝚗̲𝚝̲

    ➡️Disable FTP

    ➡️Secure the scm endpoint

    𝙽̲𝚎̲𝚝̲𝚠̲𝚘̲𝚛̲𝚔̲ ̲𝚜̲𝚎̲𝚌̲𝚞̲𝚛̲𝚒̲𝚝̲𝚢̲

    ➡️Set access restrictions

    ➡️Secure the storage account

    ➡️Private site access with Azure Private Endpoint

    ➡️Deploy your function app in isolation configuring a Web Application Firewall (WAF) for App Service Environment.

    More details: learn.microsoft.com/en-us/azur

    #security #azure #cloud #data #management #streaming #functionapp #serverless #waf #appservice #privateendpoint #networksecurity #securedeployment #apim #ftp #keyvault #key #vulnerability #assessment #misconfiguration #encryption #storage #storageaccount #defender #defenderforcloud #cnapp #cspm #cwpp #microsoft #microsoftsecurity #cloudsecurity #cloudnative #siem #monitoring #soc

  9. 𝗛𝗼𝘄 𝘁𝗼 𝘀𝗲𝗰𝘂𝗿𝗲 𝗮 𝗙𝘂𝗻𝗰𝘁𝗶𝗼𝗻 𝗔𝗽𝗽?

    𝚂̲𝚎̲𝚌̲𝚞̲𝚛̲𝚎̲ ̲𝚘̲𝚙̲𝚎̲𝚛̲𝚊̲𝚝̲𝚒̲𝚘̲𝚗̲

    ➡️Defender for Cloud for assessment of potential configuration-related security vulnerabilities

    ➡️Log and monitor: diagnostic settings to configure streaming export of platform logs and metrics

    ➡️Require HTTPS

    ➡️Securing keys with Azure key Vault

    ➡️Enable App Service Authentication/Authorization

    ➡️Use Azure API Management (APIM) to authenticate requests

    ➡️Run your function app with the lowest possible permissions

    ➡️Store data encrypted

    𝚂̲𝚎̲𝚌̲𝚞̲𝚛̲𝚎̲ ̲𝚍̲𝚎̲𝚙̲𝚕̲𝚘̲𝚢̲𝚖̲𝚎̲𝚗̲𝚝̲

    ➡️Disable FTP

    ➡️Secure the scm endpoint

    𝙽̲𝚎̲𝚝̲𝚠̲𝚘̲𝚛̲𝚔̲ ̲𝚜̲𝚎̲𝚌̲𝚞̲𝚛̲𝚒̲𝚝̲𝚢̲

    ➡️Set access restrictions

    ➡️Secure the storage account

    ➡️Private site access with Azure Private Endpoint

    ➡️Deploy your function app in isolation configuring a Web Application Firewall (WAF) for App Service Environment.

    More details: learn.microsoft.com/en-us/azur

    #security #azure #cloud #data #management #streaming #functionapp #serverless #waf #appservice #privateendpoint #networksecurity #securedeployment #apim #ftp #keyvault #key #vulnerability #assessment #misconfiguration #encryption #storage #storageaccount #defender #defenderforcloud #cnapp #cspm #cwpp #microsoft #microsoftsecurity #cloudsecurity #cloudnative #siem #monitoring #soc

  10. Usando o Azure API Management? Então vc precisa conhecer um novo recurso para proteger suas APIs e que a Microsoft anunciou esta semana: o Microsoft Defender for APIs.

    #azure #apim #api #apimanagement #cloudcomputing #devops #devsecops #microsoft

    t.co/Rgje5poadG

  11. Had a lot of fun doing my talk on #Azure #APIM at the #nultien office in Belgrade yesterday. For those interested, find all the resources and my slides over here: rickvdbos.ch/APIMtalk

  12. Had a lot of fun doing my talk on #Azure #APIM at the #nultien office in Belgrade yesterday. For those interested, find all the resources and my slides over here: rickvdbos.ch/APIMtalk

  13. Had a lot of fun doing my talk on #Azure #APIM at the #nultien office in Belgrade yesterday. For those interested, find all the resources and my slides over here: rickvdbos.ch/APIMtalk