Recall & Review
beginner
What is Basic Authentication in API testing?
Basic Authentication is a simple method where the client sends a username and password encoded in Base64 in the HTTP header to verify identity.
Click to reveal answer
beginner
How do you set Basic Authentication in Postman?
In Postman, go to the Authorization tab, select 'Basic Auth' type, then enter your username and password. Postman automatically encodes and adds the Authorization header.
Click to reveal answer
intermediate
Why is Base64 encoding not secure for passwords?
Base64 encoding only changes the format of the password; it does not encrypt it. Anyone intercepting the request can decode it easily, so it should be used with HTTPS.
Click to reveal answer
beginner
What HTTP header is used for Basic Authentication?
The 'Authorization' header is used with the value 'Basic ' followed by the Base64 encoded username and password.
Click to reveal answer
beginner
What is a common real-life analogy for Basic Authentication?
It's like showing your ID card at a door guard. You provide your username and password (ID), and the guard checks if you are allowed in.
Click to reveal answer
In Postman, which tab do you use to set Basic Authentication?
✗ Incorrect
Basic Authentication credentials are set in the Authorization tab in Postman.
What does Basic Authentication send in the HTTP header?
✗ Incorrect
Basic Authentication sends username and password encoded in Base64 in the Authorization header.
Why should Basic Authentication be used with HTTPS?
✗ Incorrect
Basic Authentication credentials are only Base64 encoded, not encrypted, so HTTPS is needed to protect them during transmission.
Which HTTP header contains the Basic Authentication credentials?
✗ Incorrect
The Authorization header carries the Basic Authentication credentials.
What is the format of the Authorization header for Basic Authentication?
✗ Incorrect
Basic Authentication uses 'Basic' followed by the Base64 encoded username and password.
Explain how Basic Authentication works in API testing using Postman.
Think about how credentials are sent and where you enter them in Postman.
You got /4 concepts.
Why is it important to use HTTPS when using Basic Authentication?
Consider the security risks of sending encoded but not encrypted data.
You got /4 concepts.