최근 검색


최근 검색 없음

Jared Fowkes's Avatar

Jared Fowkes

가입한 날짜: 2021년 4월 15일

·

마지막 활동: 2024년 9월 16일

팔로잉

0

팔로워

0

총 활동 수

6

투표 수

0

플랜 수

2

활동 개요

님의 최근 활동 Jared Fowkes

Jared Fowkes님이 에 댓글을 입력함

커뮤니티 댓글 Developer - Zendesk Apps Framework (ZAF)

I ended up using IP authentication and am only accepting requests from IPs listed in the endpoint below.  This is not ideal but seems to be a workable solution.

https://developer.zendesk.com/api-reference/ticketing/account-configuration/public_ips/

댓글 보기 · 2024년 9월 16일에 게시됨 · Jared Fowkes

0

팔로워

0

투표 수

0

댓글


Jared Fowkes님이 에 댓글을 입력함

커뮤니티 댓글 Developer - Zendesk Apps Framework (ZAF)

I ended up using IP authentication using the IPs listed in the API endpoint listed below.
https://developer.zendesk.com/api-reference/ticketing/account-configuration/public_ips/

This is not ideal but seems to be a reasonable solution.

댓글 보기 · 2024년 9월 16일에 게시됨 · Jared Fowkes

0

팔로워

0

투표 수

0

댓글


Jared Fowkes님이 에 게시물을 만듦

게시물 Developer - Zendesk Apps Framework (ZAF)

I'm working on a ticket sidebar app that gets data from our self-hosted API endpoints.  Is there a way to verify that the data requested is from one of our ZenDesk users?

I see that requests have JWT tokens in the X-Zendesk-AuthN header, but there's no documentation on how to validate them.

There is an option for signed URLs.  However, this only applies to the initial connection and not to calls made from the app itself.

What is best practice here?  ZenDesk is providing a lot of great information in their requests, but there's no great way to validate it.

2024년 9월 12일에 게시됨 · Jared Fowkes

0

팔로워

1

투표

2

댓글


Jared Fowkes님이 에 게시물을 만듦

게시물 Feedback - Developer Platform

I'm told by support that all API calls must impersonate a user.  However, many of our API calls are automatic and shouldn't be related to a user.

The issue that we ran into was that we were using an API update to trigger email notifications.  However, the emails are sent using the name of the user the API is impersonating.

I believe the easiest solution is for the Dev team to create an anonymous or system user.  So that APIs can impersonate system and thus operate as an unnamed user – much the same way that internal ZenDesk calls are managed now.

2021년 10월 12일에 게시됨 · Jared Fowkes

1

팔로워

2

투표 수

0

댓글