1. Focus on Content Marketing
2. Engineers Talk Directly to Customers
3. Be Global from Day 1
4. Marching in Chaos
5. Good products
102 karma · joined September 16, 2022
https://dev.to/apisix/api-security-with-oidc-by-using-apache...
After Googling, I found that we can use both API Gateway (e.g., Apache APISIX, https://apisix.apache.org/blog/) and GraphQL to achieve this:
1. GraphQL: Let developers choose which resources to receive. 2. API Gateway: Except for implementing BFF, also we could filter requests to make sure upstream service is protected. (It's more flexible IMO)