Company
Date Published
Author
Steve Young
Word count
1430
Language
English
Hacker News points
None

Summary

Kong Gateway offers a practical solution for implementing the Australian Consumer Data Standards (CDS), part of the Consumer Data Right legislation, by using its built-in features and plugins such as OpenID Connect and CORS. This legislation aims to enhance consumer control over personal data, initially targeting the banking sector with plans to extend to energy and telecommunications. Key aspects of implementing CDS with Kong include handling Traffic Thresholds and Endpoint Versioning. The Traffic Thresholds plugin extends Kong's Advanced Rate Limiting to manage session and transaction limits accurately, using a sliding window algorithm to differentiate between customer present, unattended, and public traffic. Endpoint Versioning is managed via a plugin that uses HTTP headers to route requests to the correct API versions, supporting the CDS requirement for version management across endpoints. These tools help existing Kong customers, particularly in the banking sector, to comply with CDS standards and can be adapted for future use in other sectors, facilitating competition and innovation among service providers.