Architecting Scalable Microservices with OAuth2 in UI-Centric Applications

Manasa Talluri · International Journal of Scientific Research in Science Engineering and Technology · 2022

Microservice architecture, or MSA, has been extensively used and implemented since 2014 by major corporations including Google, Netflix, and Twitter. This method of software system architecture involves breaking out an application's services, then deploying and running them independently. The potential use of the Spring Security Framework to protect microservice APIs created on top of the Spring Framework is investigated in this study. With an emphasis on the Authentication and Authorisation section, we will examine a high-level example of a potential microservices architecture in this article, excluding a number of other often present components. An example that uses an Identity Provider for authentication and an API Gateway as the entry point is a common one. Using MSA to create a Proof of Concept (POC) of an Inventory Management System on top of Spring Framework, Spring Security Framework, and OAuth2, we were able to demonstrate and validate the efficacy of OAuth2 and the Spring Security Framework in protecting Spring-based APIs. We also used unit testing and manual testing techniques to test the POC for security flaws.

Read the paper · More papers on PaperTik