Northern Trail Outfitters needs to secure an integration with an external Microsoft Azure API Gateway.
Which integration security mechanism should be employed?
Northern Trail Outfitters needs to secure an integration with an external Microsoft Azure API Gateway.
Which integration security mechanism should be employed?
The correct integration security mechanism for securing an integration with an external Microsoft Azure API Gateway is to configure a connected app with an authorization endpoint of the API Gateway and configure OAuth settings. This approach leverages OAuth, a standard widely used for token-based authentication and authorization, ensuring secure communication between the Salesforce instance and the external API Gateway.
can anyone eleborate why it is B and not C?
I think its also C
The way the question is formulate is ambiguous but based on "an integration with an external Microsoft Azure API Gateway" it reads this is for outbound flows - SF to API GW in which case Connected App is not applicable.
assuming your calling out