Hi, first of all I am really enjoying using bentom...
# ask-for-help
j
Hi, first of all I am really enjoying using bentoml! Very close to using it in production, but one of the requirements is making sure that the deployed endpoints are securable. I tried following the guide in https://docs.bentoml.org/en/latest/guides/security.html to secure the endpoint using the
starlette-authlib
package. However when I serve the service locally, I can call the endpoint without passing any secret! I can confirm that the model should be seeing the middleware because if I use the incorrect keyword (e.g.
svc.add_asgi_middleware(SessionMiddleware, secret='you_secret')
instead of
svc.add_asgi_middleware(SessionMiddleware, secret_key='you_secret')
then the service breaks. Not sure what I am doing wrong.