
Product
Introducing Webhook Events for Pull Request Scans
Add real-time Socket webhook events to your workflows to automatically receive pull request scan results and security alerts in real time.
node-red-contrib-securedhttp-multipart
Advanced tools
Node-RED node to create secured http multipart endpoint
Node-RED nodes is extended from httpmultipart ( node-red-contrib-http-multipart) but with built-in security. If secured field is set to false, it has the same features as httpmultipart in the default installation. It uses a predefined OAuth endpoint to validate the token in authorization header or query string in a request and to check if the user with the token has privilege to access this node.
Install from npm
npm install node-red-contrib-securedhttp-multipart
This package contains node similar to the httpmultipart and but securedhttpmultipart must be authenticated with a token in Authorization header or access_token query string for privileged user to access it if the "Secured" field is set to true. When "Secured" field is set to true, user will need to have the privilege specified in "Privileges" field. If the "Privileges" is not set but "Secured" field is set to true, an access token will need to be validated. The OAuth user endpoint will need to specify in the settting.js file with "oauth2UserUrl" key. For example,
oauth2UserUrl: "https://localhost:8080/oauth/user",
You will need to fill in the following fields:
-- Ignore the "Start" field.
-- Secured field is set to true to enable security. False to disable.
-- User will need to have privilege to access this endpoint even if the token is valid if this field is set to non-empty string. Multiple privileges can be specified with comma delimiters but user will need to have one of thoese specified privilege to access this endpoint.
Please refer to node-red-contrib-http-multipart for helps.
FAQs
Node-RED node to create secured http multipart endpoint
We found that node-red-contrib-securedhttp-multipart demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Product
Add real-time Socket webhook events to your workflows to automatically receive pull request scan results and security alerts in real time.
Research
The Socket Threat Research Team uncovered malicious NuGet packages typosquatting the popular Nethereum project to steal wallet keys.
Product
A single platform for static analysis, secrets detection, container scanning, and CVE checks—built on trusted open source tools, ready to run out of the box.