Answer the question
In order to leave comments, you need to log in
How does security work in a microservice architecture?
Hello! I'm doing a project with microservice architecture. And it is not entirely clear how authorization should work. I have a gateway service and a security service. On the forums they write that it should work like this ... security gives JWT. The user makes a request with a JWT to the gateway, and he must check the JWT in the security service. But in the examples, they do JWT validation in the gateway service and do not access security. It turns out in words one thing, but in practice another. Can anyone suggest how it should work? How should jwt authorization be? and how should the services work with each other with authorization? now they directly make requests, and not through gateway.
Answer the question
In order to leave comments, you need to log in
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question