Skip to main content

You are not logged in. Your edit will be placed in a queue until it is peer reviewed.

We welcome edits that make the post easier to understand and more valuable for readers. Because community members review edits, please try to make the post substantially better than how you found it, for example, by fixing grammar or adding additional resources and hyperlinks.

4
  • So you are providing two public API's? Or is one only available on the internal network and the other on an external network? Commented Aug 7, 2020 at 7:31
  • The latter, there is one public API that anyone can use - but for our "official web app" that runs on our domain that will make requests to the secure backend (which I suppose you could class as a 2nd API) - but this will be a blackbox if anyone were to look at the requests (and are only possible from our secure domain). Commented Aug 7, 2020 at 8:06
  • 1
    My quibble is with the "Official Web App" it makes it sound as if this app is being used from outside your local network/vpn. If it is being used from an insecure network then even though this is your "secured" api, it is still part and parcel of your "public" api regardless of whether it part of your "published" api. That aside, are there any shared functionality/service guarantees between the "official" and "public" apis? If there are then the sacrifice of this design is duplication, for independence of control. Otherwise the design itself is feasible, and tenable. Commented Aug 7, 2020 at 10:24
  • Thanks for your feedback. For clarification, the "Official Web App" is a public website that can be used by anyone, however it is hosted on our network and communicates to our secure backend due to us needing to make requests other 3rd-party hosted web apps cannot do. The official website, using the private API will have some similar functionality to the public API, so there is an issue of some code duplication there. Do you have a suggestion for dealing with that? Appreciate the feedback. Commented Aug 7, 2020 at 13:39