In my mission, I’m utilizing headless Drupal with .Internet on Drupal Developer entrance finish.
I’ve to make use of encrypted file system for Drupal Developer mission necessities. I’m encrypting Drupal Developer information after which decrypting utilizing oauth token and storing them in public folder in order that .Internet utility can get Drupal Developer file as API response. However Drupal Developer downside begins right here. As these information are in public folder, if a person logs in to Drupal Developer web site after which copies this url and pastes that in one other browser, he can simply view that file. However this isn’t Drupal Developer desired requirement and it creates a serious safety breach. So my query is how can we limit public information from getting accessed by nameless customers?