Difference between api-server and workload-api and issue with protecting API server


User is inquiring about the difference between api-server and workload-api and facing issues with protecting the API server while the workload API allows providing a token but lacks documentation. The user is experiencing unauthorized access even after passing the same headers.


Does anyone know the diference betwen api-server and workload-api ?

I didn’t manage to protect the API server, but the workload one does allow providing token. The thing is that I can’t find any doc on the workload-api. Passing the same headers returned unauthorized to me

This topic has been created from a Slack thread to give it more visibility.
It will be on Read-Only mode here. Click here if you want to access the original thread.

Join the conversation on Slack

["api-server", "workload-api", "protecting-api", "token", "unauthorized", "documentation"]