{"id":3514,"date":"2018-10-02T11:07:43","date_gmt":"2018-10-02T15:07:43","guid":{"rendered":"https:\/\/solutionsreview.com\/identity-management\/?p=3514"},"modified":"2018-10-02T11:07:43","modified_gmt":"2018-10-02T15:07:43","slug":"understanding-api-protection-with-oauth-2-0-with-ubisecure","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/","title":{"rendered":"Understanding API Protection with OAuth 2.0 (with Ubisecure)"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-3424\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD.jpg\" alt=\"Understanding API Protection with OAuth 2.0 (with Ubisecure)\" width=\"800\" height=\"433\" srcset=\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD.jpg 800w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD-300x162.jpg 300w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD-768x416.jpg 768w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD-499x270.jpg 499w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD-150x81.jpg 150w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD-333x180.jpg 333w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Application Programming Interfaces\u2014better known as <a href=\"https:\/\/www.ubisecure.com\/about\/resources\/api-protection-security-oauth-sr\/?utm_source=Solutions%20Review&amp;utm_campaign=api%20protection%20security%20oauth\" target=\"_blank\" rel=\"noopener\">APIs<\/a>\u2014are the software intermediaries allowing communications between applications. For enterprises, APIs are essential to ensuring appropriate security, security auditing, and gatekeeper capabilities on enterprise networks. Yet simultaneously, APIs can appear as a complex and daunting feature to outside observers. \u00a0\u00a0\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"iam-inject\" href=\"https:\/\/solutionsreview.com\/identity-management\/identity-governance-and-administration-buyers-guide\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" title=\"Identity Governance and Administration Buyer's Guide\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2019\/01\/identity-governance-administration-speedbump-cta.jpg\" alt=\"Download Link to Identity Governance and Administration Buyer's Guide\" width=\"800\" height=\"225\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">European customer identity and access management (CIAM) solution provider Ubisecure works to dispel this complexity in their \u201c<a href=\"https:\/\/www.ubisecure.com\/about\/resources\/api-protection-security-oauth-sr\/?utm_source=Solutions%20Review&amp;utm_campaign=api%20protection%20security%20oauth\" target=\"_blank\" rel=\"noopener\">API Protection with OAuth 2.0: Security, Identity &amp; Authorization for the API Economy<\/a>\u201d white paper. In it, Ubisecure also explores API protection in relation to identity. \u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Here are some of the key findings from the <a href=\"https:\/\/www.ubisecure.com\/about\/resources\/api-protection-security-oauth-sr\/?utm_source=Solutions%20Review&amp;utm_campaign=api%20protection%20security%20oauth\" target=\"_blank\" rel=\"noopener\">API Protection with OAuth 2.0 white paper by Ubisecure<\/a>:<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>A Word of Introduction <\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">To function optimally and securely, APIs need to know who is accessing their standardized communications. Throughout the years, APIs have used a variety of tools and capabilities to pass authorization and authentication data. These range from asking for additional username\/password parameters, to utilizing API keys, to using an OAuth 2.0 based token support. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Often, these capabilities depend on the enterprise\u2019s architecture: \u00a0<\/span><\/p>\n<ul style=\"text-align: justify\">\n<li style=\"font-weight: 400\"><span style=\"font-weight: 400\">For the hosting servers of protected resources, API protection begins with API access requests from clients via access tokens. These require access token validation using introspection services.<\/span><\/li>\n<li style=\"font-weight: 400\"><span style=\"font-weight: 400\">OAuth 2.0 recommends the client puts the access token in HTTP standard authorization header using a bearer scheme. OAuth 2.0 puts no other restrictions on parameters, body, content types, or other parts of the request. <\/span><\/li>\n<\/ul>\n<h3 style=\"text-align: justify\"><b>API Protection and Authentication Protocols<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Ubisecure identifiers four main authorization and authentication protocols in relation to API protection. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">The simplest protocol is the password grant protocol, which gains access tokens from an authorization server. However, password grant protocol can come with serious security issues, including: <\/span><\/p>\n<ul style=\"text-align: justify\">\n<li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Your username and password are disclosed to the client.<\/span><\/li>\n<li style=\"font-weight: 400\"><span style=\"font-weight: 400\">There is privilege escalation because there is no authorization. <\/span><\/li>\n<li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Clients can request access tokens have a much wider scope than is intended. <\/span><\/li>\n<\/ul>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Next is the authorization code grant protocol, which requires the resource owner use a user agent such as a web browser. Almost any authentication mechanism is possible via a web browser. This mitigates password grant protocol issues, as no credentials are disclosed to the client in this protocol. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">The third protocol is the client-initiated backchannel authentication (CIBA). CIBA protocols enable the use of an \u201cout of band\u201d authentication mechanism. Authentication devices will be software running on a mobile device. CIBA also solves the issues associated with password grant protocol because no confidential information is disclosed to the Client. CIBA is suitable for the widest range of applications. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Finally, Ubisecure defines the refresh token protocol as a viable API protection system. Access tokens allow clients to make API requests for a determined length of time. But this can lead to its own security issues; if the Resource Owner wishes to allow a client access for a longer period of time, their access token can be used without more authentication requests. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Access token will have a short expiry time, a refresh token provided for API protection will have a longer expiry time. When the access token expires, the client can use the refresh token to generate a new access token which will be subject to any security changes. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">You can download the full \u201c<a href=\"https:\/\/www.ubisecure.com\/about\/resources\/api-protection-security-oauth-sr\/?utm_source=Solutions%20Review&amp;utm_campaign=api%20protection%20security%20oauth\" target=\"_blank\" rel=\"noopener\">API Protection with OAuth 2.0: Security, Identity &amp; Authorization for the API Economy<\/a>\u201d white paper here, courtesy of Ubisecure. \u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><strong>Other Resources:\u00a0<\/strong><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/17-best-identity-governance-and-administration-platforms\/\" target=\"_blank\" rel=\"noopener\">The 17 Best Identity Governance and Administration Platforms of 2018<\/a><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/10-coolest-identity-security-ceo-leaders\/\" target=\"_blank\" rel=\"noopener\">The 10 Coolest IAM and Identity Security CEO Leaders<\/a><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/iam-vs-ciam-whats-difference\/\" target=\"_blank\" rel=\"noopener\">IAM vs CIAM: What\u2019s the Difference?<\/a><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/the-role-of-identity-in-digital-transformation\/\" target=\"_blank\" rel=\"noopener\">The Role of Identity in Digital Transformation<\/a><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/current-state-biometric-authentication\/\" target=\"_blank\" rel=\"noopener\">The Current State of Biometric Authentication in IAM<\/a><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/comparing-the-top-identity-and-access-management-solutions\/\" target=\"_blank\" rel=\"noopener\">Comparing the Top Identity and Access Management Solutions<\/a><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/the-32-best-identity-and-access-management-platforms\/\" target=\"_blank\" rel=\"noopener\">The 32 Best Identity and Access Management Platforms for 2018<\/a><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/key-findings-kuppingercoles-access-governance-intelligence-leadership-compass\/\" target=\"_blank\" rel=\"noopener\">Key Findings: KuppingerCole\u2019s Access Governance &amp; Intelligence Leadership Compass<\/a><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/2018-gartner-critical-capabilities-identity-governance-administration-key-takeaways\/\" target=\"_blank\" rel=\"noopener\">2018 Gartner Critical Capabilities for Identity Governance and Administration: Key Takeaways<\/a><\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/identity-management\/reflection-2018-gartner-magic-quadrant-identity-governance\/\" target=\"_blank\" rel=\"noopener\">Reflection on the 2018 Gartner Magic Quadrant for Identity Governance<\/a><\/p>\n<p style=\"text-align: justify\"><br \/>Widget not in any sidebars<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Application Programming Interfaces\u2014better known as APIs\u2014are the software intermediaries allowing communications between applications. For enterprises, APIs are essential to ensuring appropriate security, security auditing, and gatekeeper capabilities on enterprise networks. Yet simultaneously, APIs can appear as a complex and daunting feature to outside observers. \u00a0\u00a0\u00a0 European customer identity and access management (CIAM) solution provider Ubisecure [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":3424,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[5],"tags":[142,175,383,125,153,16,76,286,70,223,859,450],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Understanding API Protection with OAuth 2.0 (with Ubisecure)<\/title>\n<meta name=\"description\" content=\"Ubisecure works to dispel API complexity in their API Protection with OAuth 2.0: Security, Identity &amp; Authorization for the API Economy white paper.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/\",\"name\":\"Understanding API Protection with OAuth 2.0 (with Ubisecure)\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD.jpg\",\"datePublished\":\"2018-10-02T15:07:43+00:00\",\"dateModified\":\"2018-10-02T15:07:43+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"description\":\"Ubisecure works to dispel API complexity in their API Protection with OAuth 2.0: Security, Identity & Authorization for the API Economy white paper.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD.jpg\",\"width\":800,\"height\":433,\"caption\":\"BeyondTrust Releases Cybersecurity Predictions for 2021\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/identity-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Understanding API Protection with OAuth 2.0 (with Ubisecure)\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/\",\"name\":\"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services\",\"description\":\"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Understanding API Protection with OAuth 2.0 (with Ubisecure)","description":"Ubisecure works to dispel API complexity in their API Protection with OAuth 2.0: Security, Identity & Authorization for the API Economy white paper.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/","url":"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/","name":"Understanding API Protection with OAuth 2.0 (with Ubisecure)","isPartOf":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD.jpg","datePublished":"2018-10-02T15:07:43+00:00","dateModified":"2018-10-02T15:07:43+00:00","author":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"description":"Ubisecure works to dispel API complexity in their API Protection with OAuth 2.0: Security, Identity & Authorization for the API Economy white paper.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#primaryimage","url":"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD.jpg","contentUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/08\/New-Ways-to-Take-Your-Identity-Management-Seriously-MOD.jpg","width":800,"height":433,"caption":"BeyondTrust Releases Cybersecurity Predictions for 2021"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/identity-management\/understanding-api-protection-with-oauth-2-0-with-ubisecure\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/identity-management\/"},{"@type":"ListItem","position":2,"name":"Understanding API Protection with OAuth 2.0 (with Ubisecure)"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/identity-management\/#website","url":"https:\/\/solutionsreview.com\/identity-management\/","name":"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services","description":"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/3514"}],"collection":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/comments?post=3514"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/3514\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media\/3424"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media?parent=3514"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/categories?post=3514"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/tags?post=3514"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}