Summary
User is inquiring about the difference between api-server and workload-api and facing issues with protecting the API server while the workload API allows providing a token but lacks documentation. The user is experiencing unauthorized access even after passing the same headers.
Question
Does anyone know the diference betwen api-server and workload-api ?
I didn’t manage to protect the API server, but the workload one does allow providing token. The thing is that I can’t find any doc on the workload-api. Passing the same headers returned unauthorized to me
This topic has been created from a Slack thread to give it more visibility.
It will be on Read-Only mode here. Click here if you want to access the original thread.