Securely Publish & Manage Cloud APIs
The CloudSpan CloudControl Gateway simplifies how Telecoms, SaaS, PaaS and IaaS providers expose their provisioning, application and data APIs to external partners, large customers, white label resellers and value added developers. In many instances service providers will need to expose a mix of their own APIs and those of the cloud platforms they build upon, such as Redhat KVM, Citrix C3, CA 3Tera or VMWare's vCloud Director. This creates a need for providing a unified control, security and adaptation layer across a mix of internal cloud APIs. Using the CloudControl Cloud API Gateway, service providers can control which APIs get exposed to whom down to an operation level, enforcing how and when those APIs get called while providing a single dashboard for managing security and tracking usage across all the APIs.
Without touching their core application and data systems, CloudControl cloud providers can layer on functions like:
Security
- Authenticate users using a diverse set of credential and token types
- Control authorization to specific cloud API operations and methods
- Rate limit the number of requests coming into specific cloud APIs
- Guard cloud API endpoints from attacks or malformed requests
- Ensure availability and uptime to application endpoints
- Obfuscate the cloud API endpoint address from the outside world
Management
- Monitor usage of specific cloud APIs
- Meter access to specific cloud APIs
- Provide version control and backward compatibility for cloud API changes
- Institute lifecycle management for cloud API development
- Customize cloud API views for specific requestors based on their entitlements and capabilities
- Map between WSDL and REST cloud APIs
Orchestration
- Create virtual or aggregate service views from disparate cloud APIs
- Control sequence of how cloud APIs get invoked
- Create a BPEL like workflow for cloud APIs
CloudControl is sold as clusterable hardware or virtual gateways for platforms like Amazon and VMware vCloud.