How AEM Authenticates the SOAP/REST Web Services requests?
Obviously, the request needs to be authenticated and authorized for all Web Services invocations.
Is the authentication done as in the normal AEM access case?
Are the users/passwords stored in AEM or in an LDAP?
How is authorization done? Using AEM ACLs?
Appreciate your responses.
I am talking about AEM consuming external web services and the account external web services should use.
Authentication: Users could be stored in AEM repository or LDAP.
Authorization: The same users should have ACLs
Kindly confirm this understanding.