You are here: Pega API > Securing the Pega API

Securing the Pega API

The Pega API requires the use of strong transport layer security, such as TLS 1.2, to help ensure the safety of the Pega API credentials transferred using HTTP basic authentication. The Pega API will function without such basic security measures, however, it us strongly recommended that you use them.

To configure security:

PegaRULES:PegaAPI role

The role PegaRULES:PegaAPI must explicitly added to a user's access group in order for them to be able to use the Pega API. This is done when creating a new application.

Related Topics Link IconRelated information