Skip to content

Comment on Google to acquire Apigeeparent

Comments

I imagine it's a tradeoff. It's worse for your security if you try to roll your own auth/auth solution and botch it.

Auth is a routine job, only a really silly developer manages to make simple token auth vulnerable. There's no a "tradeoff" in leaving auth to MitM because it's "hard", oh also there's bunch of libraries out there doing it for you on your servers.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.